Unrated severityNVD Advisory· Published Oct 30, 2018· Updated Aug 5, 2024
CVE-2018-10712
CVE-2018-10712
Description
The AsrDrv101.sys and AsrDrv102.sys low-level drivers in ASRock RGBLED before v1.0.35.1, A-Tuning before v3.0.210, F-Stream before v3.0.210, and RestartToUEFI before v1.0.6.2 expose functionality to read/write data from/to IO ports. This could be leveraged in a number of ways to ultimately run code with elevated privileges.
Affected products
4- Range: <=1.0.6.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.exploit-db.com/exploits/45716/mitreexploitx_refsource_EXPLOIT-DB
- www.secureauth.com/labs/advisories/asrock-drivers-elevation-privilege-vulnerabilitiesmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.