// For flags

CVE-2024-38433

Nuvoton - CWE-305: Authentication Bypass by Primary Weakness

Severity Score

6.7
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Track*
*SSVC
Descriptions

Nuvoton - CWE-305: Authentication Bypass by Primary Weakness An attacker with write access to the SPI-Flash on an NPCM7xx BMC subsystem that uses the Nuvoton BootBlock reference code can modify the u-boot image header on flash parsed by the BootBlock which could lead to arbitrary code execution.

Nuvoton - CWE-305: Omisión de autenticación por debilidad primaria Un atacante con acceso de escritura a SPI-Flash en un subsistema BMC NPCM7xx que utiliza el código de referencia Nuvoton BootBlock puede modificar el encabezado de la imagen u-boot en flash analizado por BootBlock, lo que podría provocar a la ejecución de código arbitrario.

*Credits: Ferdinand Nölscher of Google's OTS-HS Team
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
Multiple
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:Track*
Exploitation
None
Automatable
No
Tech. Impact
Total
* Organization's Worst-case Scenario
Timeline
  • 2024-06-16 CVE Reserved
  • 2024-07-11 CVE Published
  • 2024-07-11 EPSS Updated
  • 2024-08-02 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-287: Improper Authentication
  • CWE-305: Authentication Bypass by Primary Weakness
CAPEC
References (1)
URL Tag Source
https://www.gov.il/en/Departments/faq/cve_advisories Third Party Advisory
URL Date SRC
URL Date SRC
URL Date SRC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Nuvoton
Search vendor "Nuvoton"
Npcm750r Firmware
Search vendor "Nuvoton" for product "Npcm750r Firmware"
< 10.10.19
Search vendor "Nuvoton" for product "Npcm750r Firmware" and version " < 10.10.19"
-
Affected
in Nuvoton
Search vendor "Nuvoton"
Npcm750r
Search vendor "Nuvoton" for product "Npcm750r"
--
Safe
Nuvoton
Search vendor "Nuvoton"
Npcm710r Firmware
Search vendor "Nuvoton" for product "Npcm710r Firmware"
< 10.10.19
Search vendor "Nuvoton" for product "Npcm710r Firmware" and version " < 10.10.19"
-
Affected
in Nuvoton
Search vendor "Nuvoton"
Npcm710r
Search vendor "Nuvoton" for product "Npcm710r"
--
Safe
Nuvoton
Search vendor "Nuvoton"
Npcm730r Firmware
Search vendor "Nuvoton" for product "Npcm730r Firmware"
< 10.10.19
Search vendor "Nuvoton" for product "Npcm730r Firmware" and version " < 10.10.19"
-
Affected
in Nuvoton
Search vendor "Nuvoton"
Npcm730r
Search vendor "Nuvoton" for product "Npcm730r"
--
Safe
Nuvoton
Search vendor "Nuvoton"
Npcm705r Firmware
Search vendor "Nuvoton" for product "Npcm705r Firmware"
< 10.10.19
Search vendor "Nuvoton" for product "Npcm705r Firmware" and version " < 10.10.19"
-
Affected
in Nuvoton
Search vendor "Nuvoton"
Npcm705r
Search vendor "Nuvoton" for product "Npcm705r"
--
Safe