CVE-2023-31307

CVSS 3.1 Score 2.3 of 10 (low)

Details

Published Aug 13, 2024
Updated: Aug 14, 2024

Summary

CVE-2023-31307 is a vulnerability affecting Power Management Firmware (PMFW). An attacker, with privileged access, can exploit improper array index validation in PMFW, resulting in an out-of-bounds memory read. This issue potentially permits a denial of service. The vulnerability lies in the PMFW's handling of array indices, providing an attack vector for privileged adversaries.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share