Vulnerabilities (CVE)

Filtered by CWE-782
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-35841 2024-05-14 N/A 7.8 HIGH
Exposed IOCTL with Insufficient Access Control in Phoenix WinFlash Driver on Windows allows Privilege Escalation which allows for modification of system firmware.This issue affects WinFlash Driver: before 4.5.0.0.
CVE-2021-21551 1 Dell 1 Dbutil 2 3.sys 2023-12-10 4.6 MEDIUM 7.8 HIGH
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required.