8.2
CVE-2026-12855
- EPSS 0.13%
- Veröffentlicht 09.09.2026 03:59:11
- Zuletzt bearbeitet 01.10.2026 16:17:40
- Erkennungen
H19WMIHandlerSmm: unvalidated memory boundary could result in arbitrary code execution.
Unvalidated memory boundary could result in arbitrary code execution. The vulnerability exists in the code developed specifically for HP projects.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerInsyde Software
≫
Produkt
InsydeH2O
Default Statusunaffected
Version
See in the Solution
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.13% | 0.025 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 8338d8cb-57f7-4252-abc0-96fd13e98d21 | 8.2 | 1.5 | 6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Für Zugriff zu Vulnerability Intelligence ist ein VulnDex Zugang erforderlich.
https://www.insyde.com/security-pledge/sa-2026009/
https://www.kb.cert.org/vuls/id/553437