CVE-2024-21957

HIGH

AMD Management Console - Privilege Escalation

Title source: llm
STIX 2.1

Description

Incorrect default permissions in the AMD Management Console installation directory could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.

References (1)

Core 1

Scores

CVSS v3 7.3
EPSS 0.0007
EPSS Percentile 22.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-276
Status published
Products (1)
amd/management_console < 10.0
Published Nov 12, 2024
Tracked Since Feb 18, 2026