CVE-2025-58770Improper Handling of Insufficient Permissions or Privileges in Aptiov

Severity
7.2HIGHNVD
EPSS
0.0%
top 95.12%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 12

Description

APTIOV contains a vulnerability in BIOS where a user may cause “Improper Handling of Insufficient Permissions or Privileges” by local access. Successful exploitation of this vulnerability can lead to escalation of authorization and potentially impact Integrity and Availability.

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:H/SI:H/SA:H

Affected Packages2 packages

CVEListV5ami/aptiovAptioV_5.0AptioV_5.041
NVDami/aptio_v5.05.041

🔴Vulnerability Details

2
CVEList
TCG2 TPM RT Not Locked Issue2025-12-12
GHSA
GHSA-5gw4-7cfm-h82q: APTIOV contains a vulnerability in BIOS where a user may cause “Improper Handling of Insufficient Permissions or Privileges” by local access2025-12-12
CVE-2025-58770 — AMI Aptiov vulnerability | cvebase