Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-31100


Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash modification. This issue affects SecureCore™ Technology™ 4: * from 4.3.0.0 before 4.3.0.203 * from 4.3.1.0 before 4.3.1.163 * from 4.4.0.0 before 4.4.0.217 * from 4.5.0.0 before 4.5.0.138


Published

2023-11-15T00:15:07.573

Last Modified

2025-09-25T21:17:10.353

Status

Analyzed

Source

22d9ba52-f336-4b0d-bf1f-0efbdcc3c1de

Severity

CVSSv3.1: 8.4 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-284
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System phoenixtech securecore_technology < 4.3.0.203 Yes
Operating System phoenixtech securecore_technology < 4.3.1.163 Yes
Operating System phoenixtech securecore_technology < 4.4.0.217 Yes
Operating System phoenixtech securecore_technology < 4.5.0.138 Yes

References