AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-5281

LOW · CVSS 2.6 EPSS 0.34%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-11-24 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 2.6. It affects Linux.

CVE
CVE-2015-5281
Severity
LOW
CVSS
2.6
EPSS
0.34%
Linux

Original NVD Description

The grub2 package before 2.02-0.29 in Red Hat Enterprise Linux (RHEL) 7, when used on UEFI systems, allows local users to bypass intended Secure Boot restrictions and execute non-verified code via a crafted (1) multiboot or (2) multiboot2 module in the configuration file or physically proximate attackers to bypass intended Secure Boot restrictions and execute non-verified code via the (3) boot menu.