Incorrect default permissions in the AMD μProf installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:HAmd Uprof
APPAmd< 4.1.424< 4.2.816< 4.2.845
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCELPE
Related vulnerabilities
CVE-2025-48510HIGH7.1same product
Improper return value within AMD uProf can allow a local attacker to bypass KSLR, potentially resulting in los...
CVE-2023-31348HIGH7.3same product
A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentiall...
CVE-2023-31341HIGH7.3same product
Insufficient validation of the Input Output Control (IOCTL) input buffer in AMD μProf may allow an authenticat...
CVE-2026-28237MEDIUM6.8same product
Nienograniczona alokacja zasobów w AMD uProf może być exploitowana do konsumpcji nadmiernych zasobów systemowy...
CVE-2026-0466MEDIUM6.8same product
Niewłaściwa kontrola dostępu w AMD uProf pozwala lokalny atakujący z uprawnieniami użytkownika na zapis do sek...