216.73.216.36

CVE-2025-3770

· Published 07/08/2025 01:15 · Modified 07/08/2025 21:26

Labels: CVE-2025-3770 2025-08-07CVE-2025-3770CWE-693[email protected]

Essential information

Published
07/08/2025 01:15
Modified
07/08/2025 21:26
Author
Creator
CVSS
7.0 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
edk2 / edk2 bios cpe:2.3:a:edk2:edk2_bios:*:*:*:*:*:*:*:*

References