CVE-2023-31359

HIGH

AMD Manageability API - Privilege Escalation

Title source: llm

Description

Incorrect default permissions in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

Scores

CVSS v3 7.3
EPSS 0.0004
EPSS Percentile 13.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-276
Status published

Affected Products (1)

amd/aim-t_manageability_api < 6.0.0.2234

Timeline

Published May 13, 2025
Tracked Since Feb 18, 2026