phoenixtech records
8 published records for vendor phoenixtech.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 12.5%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-754 Improper Check for Unusual or Exceptional Conditions3
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-121 Stack-based Buffer Overflow1
- CWE-20 Improper Input Validation1
- CWE-284 Improper Access Control1
- CWE-732 Incorrect Permission Assignment for Critical Resource1
The weakness classes this vendor ships most often: where to look.
CWEAll records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2024-0762Proof of concept | Potential buffer overflow when handling UEFI variablesintel · celeron 3865u · CWE-120 | High7.8 | — | 0.8% | May 14, 2024 |
31Monitor | CVE-2023-35841No exploit | WinFlash Driver Permissions Issuephoenixtech · winflash · CWE-732 | High7.8 | — | 0.4% | May 14, 2024 |
31Monitor | CVE-2023-5058No exploit | Improper Input Validation in the processing of user-supplied splash screen during system boot in Phoenix SecureCore™ Technology™ 4 potentialphoenixtech · securecore technology · CWE-20 | High7.8 | — | 0.3% | Dec 7, 2023 |
31Monitor | CVE-2024-1598No exploit | Potential buffer overflow when handling UEFI variablesintel · celeron n4020 · CWE-121 | High7.8 | — | 0.2% | May 14, 2024 |
28Monitor | CVE-2023-31100No exploit | Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash modification.phoenixtech · securecore technology · CWE-284 | High7.1 | — | 0.2% | Nov 14, 2023 |
18Monitor | CVE-2024-29979No exploit | Unsafe Handling of Phoenix UEFI Variablesintel · celeron 3865u · CWE-754 | Medium4.6 | — | 0.2% | Jan 14, 2025 |
18Monitor | CVE-2024-29980No exploit | Unsafe Handling of IHV UEFI Variablesintel · celeron 3865u · CWE-754 | Medium4.6 | — | 0.1% | Jan 14, 2025 |
13Monitor | CVE-2024-12533No exploit | Improper Check for Unusual or Exceptional Conditions vulnerability in Phoenix SecureCore Technology 4 allows Input Data Manipulation.This isphoenixtech · securecore technology · CWE-754 | Low3.3 | — | 0.1% | May 13, 2025 |
- CVE-2024-076231Monitor
Potential buffer overflow when handling UEFI variables
HighCVSS 7.8Proof of conceptEPSS 1%intel · celeron 3865uMay 14, 2024
- CVE-2023-3584131Monitor
WinFlash Driver Permissions Issue
HighCVSS 7.8No exploitEPSS 0%phoenixtech · winflashMay 14, 2024
- CVE-2023-505831Monitor
Improper Input Validation in the processing of user-supplied splash screen during system boot in Phoenix SecureCore™ Technology™ 4 potential
HighCVSS 7.8No exploitEPSS 0%phoenixtech · securecore technologyDec 7, 2023
- CVE-2024-159831Monitor
Potential buffer overflow when handling UEFI variables
HighCVSS 7.8No exploitEPSS 0%intel · celeron n4020May 14, 2024
- CVE-2023-3110028Monitor
Improper Access Control in SMI handler vulnerability in Phoenix SecureCore™ Technology™ 4 allows SPI flash modification.
HighCVSS 7.1No exploitEPSS 0%phoenixtech · securecore technologyNov 14, 2023
- CVE-2024-2997918Monitor
Unsafe Handling of Phoenix UEFI Variables
MediumCVSS 4.6No exploitEPSS 0%intel · celeron 3865uJan 14, 2025
- CVE-2024-2998018Monitor
Unsafe Handling of IHV UEFI Variables
MediumCVSS 4.6No exploitEPSS 0%intel · celeron 3865uJan 14, 2025
- CVE-2024-1253313Monitor
Improper Check for Unusual or Exceptional Conditions vulnerability in Phoenix SecureCore Technology 4 allows Input Data Manipulation.This is
LowCVSS 3.3No exploitEPSS 0%phoenixtech · securecore technologyMay 13, 2025