CVE-2024-2315

APTIOV contains a vulnerability in BIOS where may cause Improper Access Control by a local attacker. Successful exploitation of this vulnerability may lead to unexpected SPI flash modifications and BIOS boot kit launches, also impacting the availability.
Configurations

Configuration 1 (hide)

cpe:2.3:o:ami:aptio_v:*:*:*:*:*:*:*:*

History

02 Oct 2025, 14:28

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.1
First Time Ami
Ami aptio V
CPE cpe:2.3:o:ami:aptio_v:*:*:*:*:*:*:*:*
References () https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/2024/AMI-SA-2024004.pdf - () https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/2024/AMI-SA-2024004.pdf - Vendor Advisory

Information

Published : 2024-11-12 15:15

Updated : 2025-10-02 14:28


NVD link : CVE-2024-2315

Mitre link : CVE-2024-2315

CVE.ORG link : CVE-2024-2315


JSON object : View

Products Affected

ami

  • aptio_v
CWE
CWE-284

Improper Access Control