6.7
CVSSv3

CVE-2022-34303

Published: 26/08/2022 Updated: 14/11/2023
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 0

Vulnerability Summary

A flaw was found in Eurosoft bootloaders prior to 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure Boot protections. In order to load and execute arbitrary code in the pre-boot stage, an attacker simply needs to replace the existing signed bootloader currently in use with this bootloader. Access to the EFI System Partition is required for booting using external media.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

eurosoft-uk uefi bootloader

redhat enterprise linux 7.0

redhat enterprise linux 8.0

redhat enterprise linux 9.0

microsoft windows server 2012 r2

microsoft windows 10 1607

microsoft windows 8.1 -

microsoft windows server 2016 -

microsoft windows rt 8.1 -

microsoft windows server 2012 -

microsoft windows 10 -

microsoft windows server 2019 -

microsoft windows 10 1809

microsoft windows 10 20h2

microsoft windows server 2016 20h2

microsoft windows 10 21h1

microsoft windows server 2022 -

microsoft windows 11 -

microsoft windows 10 21h2

Vendor Advisories

Synopsis Moderate: fwupd security and bug fix update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for fwupd is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as hav ...