CWE-1328
5 CVEs • Abstraction: Base
Security Version Number Mutable to Older Versions
Security-version number in hardware is mutable, resulting in the ability to downgrade (roll-back) the boot firmware to vulnerable code versions.
CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Tesla Wall Connector Firmware Downgrade Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Tesla Wall Connector devices. Authentication is not req...Show more |
1Autel 9Maxicharger Ac Elite Business C50 Firmware Maxicharger Ac Pro FirmwareMaxicharger Ac Ultra Firmware+6 moreJun 17, 2026 Jun 25, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Autel MaxiCharger AC Wallbox Commercial Firmware Downgrade Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Autel MaxiCharge...Show more |
1Dell 4Precision 5820 Tower Firmware Precision 7820 Tower FirmwarePrecision 7865 Tower Firmware+1 moreJun 17, 2026 Apr 10, 2025 N/A· v4 4.4 MEDIUM· v3 N/A· v2 Dell Client Platform BIOS contains a Security Version Number Mutable to Older Versions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to BIOS upgrade den...Show more |
An improper access control vulnerability exists in Bitdefender Box 1 (firmware version 1.3.52.928 and below) that allows an unauthenticated attacker to downgrade the device's firmware to an older, potentially vulnerable...Show more |
A new feature to prevent Firmware downgrades was recently added to some Lexmark products. A method to
override this downgrade protection has been identified. |