SB2023071286 - Security features bypass in Microsoft Windows for Trend Micro EFI Modules
Published: July 12, 2023
Security Bulletin ID
SB2023071286
Severity
Low
Patch available
YES
Number of vulnerabilities
1
Exploitation vector
Physical access
Highest impact
Data manipulation
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Security features bypass (CVE-ID: CVE-2023-28005)
The vulnerability allows an attacker to bypass Secure Boot restrictions.
the vulnerability exists due to incorrect implementation of the Secure Boot feature. An attacker with physical access to device can bypass the Secure Boot restrictions and gain unauthorized access to the system.
Remediation
Install update from vendor's website.