Gigabyte Gb-Bsi7H-6500 vulnerabilities
2 known vulnerabilities affecting gigabyte/gb-bsi7h-6500.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
2
Severity breakdown
CRITICAL2
Vulnerabilities
Page 1 of 1
CVE-2017-3198P1CRITICALCVSS 9.8ExploitedRansomwarevF62018-07-09
CVE-2017-3198 [CRITICAL] CWE-345 CVE-2017-3198: GIGABYTE BRIX UEFI firmware does not cryptographically validate images prior to updating the system
GIGABYTE BRIX UEFI firmware does not cryptographically validate images prior to updating the system firmware. Additionally, the firmware updates are served over HTTP. An attacker can make arbitrary modifications to firmware images without being detected.
nvd
CVE-2017-3197P1CRITICALCVSS 9.8ExploitedRansomwarevF62018-07-09
CVE-2017-3197 [CRITICAL] CWE-693 CVE-2017-3197: GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2) platfor
GIGABYTE BRIX UEFI firmware for the GB-BSi7H-6500 (version F6) and GB-BXi7-5775 (version F2) platforms does not securely implement BIOSWE, BLE, SMM_BWP, and PRx features. As a result, the BIOS is not protected from arbitrary write access and may permit modifications to the SPI flash.
nvd