CVE-2018-12333: High severity ecos secure boot stick vulnerability
Published Jun 17, 2018
·Updated
Insufficient Verification of Data Authenticity vulnerability in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows an attacker to manipulate security relevant configurations and execute malicious code.
Affected Software
2 affected components
ECOS Secure Boot Stick Firmware=5.6.5
ECOS Secure Boot Stick
Event History
Jun 17, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-12333?
CVE-2018-12333 is classified as a high severity vulnerability due to the potential for an attacker to manipulate security relevant configurations.
2
How do I fix CVE-2018-12333?
To fix CVE-2018-12333, update the ECOS Secure Boot Stick firmware to the latest version that addresses this vulnerability.
3
What potential risks does CVE-2018-12333 pose?
CVE-2018-12333 poses risks such as executing malicious code and compromising the security of the device.
4
Which versions of ECOS Secure Boot Stick are affected by CVE-2018-12333?
CVE-2018-12333 specifically affects ECOS Secure Boot Stick firmware version 5.6.5.
5
Can CVE-2018-12333 be exploited remotely?
Yes, CVE-2018-12333 can potentially be exploited remotely by an attacker with sufficient access.