CVE-2024-21958

HIGH

AMD Provisioning Console - Privilege Escalation

Title source: llm
STIX 2.1

Description

Incorrect default permissions in the AMD Provisioning Console installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

References (1)

Core 1

Scores

CVSS v3 7.3
EPSS 0.0007
EPSS Percentile 22.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-276
Status published
Products (1)
amd/provisioning_console < 4.0.0.408
Published Nov 12, 2024
Tracked Since Feb 18, 2026