CVE-2023-31359
HIGHAMD Manageability API - Privilege Escalation
Title source: llmDescription
Incorrect default permissions in the AMD Manageability API could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
Scores
CVSS v3
7.3
EPSS
0.0004
EPSS Percentile
13.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Classification
CWE
CWE-276
Status
published
Affected Products (1)
amd/aim-t_manageability_api
< 6.0.0.2234
Timeline
Published
May 13, 2025
Tracked Since
Feb 18, 2026