Vulnerabilities (CVE)

Filtered by CWE-1072
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-0438 2026-05-15 N/A N/A
A System Management Mode (SMM) handler could perform a callout to code located in non-SMM/untrusted memory. A highly privileged attacker could, with active user interaction and under high complexity and present preconditions, trigger execution of attacker-controlled code in SMM, potentially compromising the system’s confidentiality, integrity, and availability.