CVE-2023-31358
HIGHAMD Manageability API - Privilege Escalation
Title source: llmDescription
A DLL hijacking vulnerability in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
Scores
CVSS v3
7.3
EPSS
0.0005
EPSS Percentile
15.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Classification
CWE
CWE-276
CWE-427
Status
published
Affected Products (1)
amd/aim-t_manageability_api
< 6.0.0.2234
Timeline
Published
May 13, 2025
Tracked Since
Feb 18, 2026