SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-33197

HIGH · CVSS 8.7 EPSS 0.12% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The vulnerability in AMI APTIOV BIOS allows a privileged user to exploit an "Incomplete List of Disallowed Inputs" through local access, potentially leading to arbitrary code execution. This could compromise the system's confidentiality, integrity, and availability. Organizations using affected BIOS versions should prioritize remediation to mitigate the risk of exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit arbitrary code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-33197
Severity
HIGH
CVSS
8.7
EPSS
0.12%

Original NVD Description

AMI APTIOV contains a vulnerability in BIOS where a privileged user may cause the “Incomplete List of Disallowed Inputs” by local access. Successful exploitation of this vulnerability may lead to arbitrary code execution and impact system Confidentiality, Integrity, and Availability.