ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can use system management interrupt (SMI) to modify memory, resulting in arbitrary code execution for controlling the system or disrupting service.
References
Link | Resource |
---|---|
https://www.twcert.org.tw/tw/cp-132-5547-34bc4-1.html | Third Party Advisory |
https://www.twcert.org.tw/tw/cp-132-5547-34bc4-1.html | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
History
21 Nov 2024, 06:45
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.twcert.org.tw/tw/cp-132-5547-34bc4-1.html - Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : 7.2
v3 : 6.7 |
24 Jul 2023, 13:53
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-787 |
27 Jan 2022, 16:30
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 7.2
v3 : 7.8 |
CWE | CWE-20 | |
References | (CONFIRM) https://www.twcert.org.tw/tw/cp-132-5547-34bc4-1.html - Third Party Advisory | |
CPE | cpe:2.3:h:asus:pb61v:-:*:*:*:*:*:*:* cpe:2.3:o:asus:pn30_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:asus:ts10:-:*:*:*:*:*:*:* cpe:2.3:h:asus:pn60:-:*:*:*:*:*:*:* cpe:2.3:o:asus:pb60_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:asus:vc65-c1:-:*:*:*:*:*:*:* cpe:2.3:h:asus:un65u:-:*:*:*:*:*:*:* cpe:2.3:o:asus:ts10_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:asus:pb50_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:asus:vc65-c1_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:asus:pn40_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:asus:pn40:-:*:*:*:*:*:*:* cpe:2.3:o:asus:pn60_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:asus:pb60g:-:*:*:*:*:*:*:* cpe:2.3:h:asus:pb60v:-:*:*:*:*:*:*:* cpe:2.3:h:asus:pn30:-:*:*:*:*:*:*:* cpe:2.3:o:asus:pb60s_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:asus:pb61v_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:asus:pa90:-:*:*:*:*:*:*:* cpe:2.3:o:asus:pb60v_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:asus:un65u_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:asus:pb60g_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:asus:pa90_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:asus:pb60s:-:*:*:*:*:*:*:* cpe:2.3:h:asus:pb50:-:*:*:*:*:*:*:* cpe:2.3:h:asus:pb60:-:*:*:*:*:*:*:* |
21 Jan 2022, 09:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-01-21 09:15
Updated : 2024-11-21 06:45
NVD link : CVE-2022-21933
Mitre link : CVE-2022-21933
CVE.ORG link : CVE-2022-21933
JSON object : View
Products Affected
asus
- un65u_firmware
- pb50_firmware
- pn60
- ts10_firmware
- pb60s_firmware
- pb61v_firmware
- un65u
- pb60s
- pn30_firmware
- ts10
- vc65-c1_firmware
- pb60g_firmware
- pn40
- pn30
- pb60v_firmware
- vc65-c1
- pb60v
- pa90
- pb60
- pn40_firmware
- pb60_firmware
- pb60g
- pa90_firmware
- pn60_firmware
- pb50
- pb61v