Secure Boot Security Feature Bypass Vulnerability - CVE-2024-28898ID: oval:org.secpod.oval:def:98960 | Date: (C)2024-04-11 (M)2024-04-17 |
Class: VULNERABILITY | Family: windows |
Secure Boot Security Feature Bypass Vulnerability. An attacker who successfully exploited this vulnerability could bypass Secure Boot. Successful exploitation of this vulnerability requires an attacker to gather information specific to the environment and take additional actions prior to exploitation to prepare the target environment. An authenticated attacker could exploit this vulnerability with LAN access. An unauthorized attacker must wait for a user to initiate a connection. To exploit the vulnerability, an attacker who has physical access or Administrative rights to a target device could install a malicious .bcd file.
Platform: |
Microsoft Windows 10 |
Microsoft Windows 11 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2012 R2 |
Microsoft Windows Server 2016 |
Microsoft Windows Server 2019 |
Microsoft Windows Server 2022 |
Microsoft Windows Server |