CVE-2024-46916
- EPSS 0.06%
- Veröffentlicht 29.08.2025 00:00:00
- Zuletzt bearbeitet 09.09.2025 14:09:03
Diebold Nixdorf Vynamic Security Suite through 4.3.0 SR06 contains functionality that allows the removal of critical system files before the filesystem is properly mounted (e.g., leveraging a delete call in /etc/rc.d/init.d/mountfs to remove the /etc...
CVE-2024-46917
- EPSS 0.03%
- Veröffentlicht 29.08.2025 00:00:00
- Zuletzt bearbeitet 09.09.2025 14:02:46
Diebold Nixdorf Vynamic Security Suite through 4.3.0 SR01 does not validate file attributes or the contents of /root during integrity validation. This allows code execution, recovery of TPM Disk Encryption keys, decryption of the Windows system parti...
CVE-2023-24062
- EPSS 0.38%
- Veröffentlicht 08.08.2024 18:15:09
- Zuletzt bearbeitet 18.03.2025 19:15:41
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR12, 4.0.0 SR04, 4.1.0 SR02, and 4.2.0 SR01 fails to validate the directory structure of the root file system during the Pre-Boot Authorization (PBA) process. This can be exploited by a physi...
CVE-2023-24063
- EPSS 0.3%
- Veröffentlicht 08.08.2024 18:15:09
- Zuletzt bearbeitet 27.03.2025 16:15:18
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR10 fails to validate /etc/mtab during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's hard disk.
CVE-2023-24064
- EPSS 0.38%
- Veröffentlicht 08.08.2024 18:15:09
- Zuletzt bearbeitet 19.08.2024 19:04:26
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR4 fails to validate /etc/initab during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's hard disk...
CVE-2023-28865
- EPSS 0.32%
- Veröffentlicht 08.08.2024 18:15:09
- Zuletzt bearbeitet 19.08.2024 19:04:14
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR15, 4.0.0 SR05, 4.1.0 SR03, and 4.2.0 SR02 fails to validate the directory contents of certain directories (e.g., ensuring the expected hash sum) during the Pre-Boot Authorization (PBA) proc...
CVE-2023-33206
- EPSS 0.79%
- Veröffentlicht 08.08.2024 18:15:09
- Zuletzt bearbeitet 19.08.2024 19:04:03
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR16, 4.0.0 SR06, 4.1.0 SR04, 4.2.0 SR03, and 4.3.0 SR01 fails to validate symlinks during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to...
CVE-2023-40261
- EPSS 0.23%
- Veröffentlicht 08.08.2024 18:15:09
- Zuletzt bearbeitet 13.03.2025 20:15:15
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR17, 4.0.0 SR07, 4.1.0 SR04, 4.2.0 SR04, and 4.3.0 SR02 fails to validate file attributes during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is ...