SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2023-20576

HIGH · CVSS 7.7 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The vulnerability arises from insufficient verification of data authenticity in AGESA™, which could enable an attacker to manipulate SPI ROM data. This could lead to denial of service or privilege escalation, posing significant risks to system integrity and availability. Organizations utilizing affected systems should prioritize remediation efforts to mitigate potential exploitation.

CVE
CVE-2023-20576
Severity
HIGH
CVSS
7.7
EPSS
0.13%

Original NVD Description

Insufficient Verification of Data Authenticity in AGESA™ may allow an attacker to update SPI ROM data potentially resulting in denial of service or privilege escalation.