CVE-2023-31358

A DLL hijacking vulnerability in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:amd:aim-t_manageability_api:*:*:*:*:*:*:*:*

History

16 May 2025, 16:51

Type Values Removed Values Added
CPE cpe:2.3:a:amd:aim-t_manageability_api:*:*:*:*:*:*:*:*
First Time Amd
Amd aim-t Manageability Api
Summary
  • (es) Una vulnerabilidad de secuestro de DLL en la API de administración de AMD podría permitir que un atacante logre una escalada de privilegios, lo que potencialmente resultaría en la ejecución de código arbitrario.
References () https://www.amd.com/en/resources/product-security/bulletin/amd-sb-9015.html - () https://www.amd.com/en/resources/product-security/bulletin/amd-sb-9015.html - Vendor Advisory
CWE CWE-427

13 May 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-13 18:15

Updated : 2025-05-16 16:51


NVD link : CVE-2023-31358

Mitre link : CVE-2023-31358

CVE.ORG link : CVE-2023-31358


JSON object : View

Products Affected

amd

  • aim-t_manageability_api
CWE
CWE-276

Incorrect Default Permissions

CWE-427

Uncontrolled Search Path Element