CVE-2023-31358

HIGH

AMD Manageability API - Privilege Escalation

Title source: llm

Description

A DLL hijacking vulnerability in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

Scores

CVSS v3 7.3
EPSS 0.0005
EPSS Percentile 15.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-276 CWE-427
Status published

Affected Products (1)

amd/aim-t_manageability_api < 6.0.0.2234

Timeline

Published May 13, 2025
Tracked Since Feb 18, 2026