8.2

CVE-2024-7344

Exploit
Howyar UEFI Application "Reloader"  (32-bit and 64-bit)  is vulnerable to execution of unsigned software in a hardcoded path.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cs-grpNeo Impact Version < 10.1.024-20241127
GreenwareGreenguard Version < 10.2.023-20240927
HowyarSysreturn Version < 10.2.023_20240919
RadixSmart Recovery Version < 11.2.023-20240927
SanfongEz-back System Version < 10.3.024-20241127
SignalcomputerHdd King Version < 10.3.021-20241127
WasayErecoveryrx Version < 8.4.022-20241127
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.14% 0.348
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.2 1.5 6
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 8.2 1.5 6
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CWE-347 Improper Verification of Cryptographic Signature

The product does not verify, or incorrectly verifies, the cryptographic signature for data.