Skip to main content

CVE-2022-21894

Description

Secure Boot Security Feature Bypass Vulnerability

microsoft
CVE ID: CVE-2022-21894
Base Score: 4.4
Base Severity: MEDIUM
Vector String:CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Impact Score: 3.6
Exploitability Score: 0.8
microsoft
CVE ID: CVE-2022-21894
Base Score: 4.4
Base Severity: MEDIUM
Vector String:CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N/E:U/RL:O/RC:C

Proof Of Concept

Wack0

baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability

Refrence: GitHub

ASkyeye

Example payload for CVE-2022-21894

Refrence: GitHub

Wack0

An implementation of baton drop (CVE-2022-21894) for armv7 (MSM8960)

Refrence: GitHub

bakedmuffinman

Created to help detect IOCs for CVE-2022-21894: The BlackLotus campaign

Refrence: GitHub

qjawls2003

Public repo for anything CVE-2022-21894

Refrence: GitHub

nova-master

Refrence: GitHub

Refrence: NVDMITRE