CVE-2023-35841
EUVD-2023-3983414.05.2024, 16:15
Exposed IOCTL with Insufficient Access Control in Phoenix WinFlash Driver on Windows allows Privilege Escalation which allows for modification of system firmware.This issue affects WinFlash Driver: before 4.5.0.0.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| phoenixtech | winflash | 𝑥 < 4.5.0.0 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| phoenix | winflash_driver | 𝑥 < 4.5.0 | ADP |
Common Weakness Enumeration
References