Security Advisory

CVE-2022-21933

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-01-21 09:05:12
Last updated 2024-09-16 20:06:36
Assigner twcert
State PUBLISHED

Description

ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can use system management interrupt (SMI) to modify memory, resulting in arbitrary code execution for controlling the system or disrupting service.