Where
-Infinity
0

Insyde InsydeH2OInput Validation

Risk 59
Severity
7.5
First published (updated )

Insyde BIOSSecureFlashDxe: Incorrect UEFI variable attributes check allows usage of invalid certificate

Risk 70
Severity
7.8
First published (updated )

Insyde InsydeH2OAn issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before ve…

Risk 43
Severity
7.5
First published (updated )

Insyde InsydeH2OAn issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before ve…

Risk 43
Severity
7.5
First published (updated )

Insyde InsydeH2OAn issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before ve…

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Insyde kernelInput Validation

Risk 52
Severity
7.9
First published (updated )

Insyde kernelAn issue was discovered in AcpiS3SaveDxe and ChipsetSvcDxe in Insyde InsydeH2O with kernel 5.2 thoug…

Risk 48
Severity
6.4
First published (updated )

Insyde IHISIInsyde IHISI function 0x49 can restore factory defaults for certain UEFI variables without further a…

Risk 28
Severity
5.3
First published (updated )

Insyde InsydeH2OAn issue was discovered in the IhisiServiceSmm module in Insyde InsydeH2O with kernel 5.2 before 05.…

Risk 38
Severity
6.1
First published (updated )

Insyde InsydeH2O kernel 5.2A memory corruption vulnerability in SdHost and SdMmcDevice in Insyde InsydeH2O kernel 5.2 before 05…

Risk 55
Severity
7.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Insyde InsydeH2OA memory corruption vulnerability in HddPassword in Insyde InsydeH2O kernel 5.2 before 05.29.09, ker…

Risk 55
Severity
7.4
First published (updated )

Insyde kernelA memory corruption vulnerability in StorageSecurityCommandDxe in Insyde InsydeH2O before kernel 5.2…

Risk 55
Severity
7.4
First published (updated )

Insyde kernelAn issue was discovered in PnpSmm in Insyde InsydeH2O with kernel 5.0 through 5.6. There is a possib…

Risk 47
Severity
6.3
First published (updated )

Insyde InsydeH2OAn issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. The CapsuleIFWUSmm driver d…

Risk 28
Severity
5.3
First published (updated )

Insyde InsydeH2OTOCTOU race-condition vulnerability in Insyde InsydeH2O with Kernel 5.2 before version 05.27.29, Ker…

Risk 28
Severity
4.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Insyde InsydeH2OA LogoFAIL issue was discovered in BmpDecoderDxe in Insyde InsydeH2O with kernel 5.2 before 05.28.47…

Risk 33
Severity
5.5
First published (updated )

Insyde InsydeH2OAn issue was discovered in IhisiServicesSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. There a…

Risk 32
Severity
5.5
First published (updated )

Insyde InsydeH2OAn SMM memory corruption vulnerability in the SMM driver (SMRAM write) in CsmInt10HookSmm in Insyde …

Risk 69
Severity
7.8
First published (updated )

Insyde InsydeH2OBuffer Overflow

Risk 86
Severity
9.8
First published (updated )

Insyde InsydeH2OAn issue was discovered in TrEEConfigDriver in Insyde InsydeH2O with kernel 5.0 through 5.5. It can …

Risk 31
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Insyde InsydeH2OCode Injection

Risk 69
Severity
7.8
First published (updated )

Insyde H2OFFTAn issue was discovered in iscflashx64.sys 3.9.3.0 in Insyde H2OFFT 6.20.00. When handling IOCTL 0x2…

Risk 52
Severity
7.1
First published (updated )

Insyde InsydeH2OAn issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. UEFI implementations do not…

Risk 32
Severity
5.5
First published (updated )

Insyde InsydeH2OAn issue was discovered in SysPasswordDxe in Insyde InsydeH2O with kernel 5.0 through 5.5. System pa…

Risk 43
Severity
7.5
First published (updated )

Insyde InsydeH2OInput Validation

Risk 32
Severity
5.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Insyde InsydecrpkgAn issue was discovered in InsydeH2O. A malicious operating system can tamper with a runtime-writabl…

Risk 52
Severity
7.1
First published (updated )

Insyde kernelAn issue was discovered in FvbServicesRuntimeDxe in Insyde InsydeH2O with kernel 5.0 through 5.5. Th…

Risk 36
Severity
6.5
First published (updated )

Insyde InsydeH2OAn issue was discovered in IhisiSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. IHISI function …

Risk 32
Severity
5.5
First published (updated )

Insyde InsydeH2OInput Validation

Risk 69
Severity
7.8
First published (updated )

Insyde InsydeH2OInput Validation

Risk 72
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203