VulnerabilityBSI CERT-Bund WID2026-09-09 08:44 UTCICS / OT (industrial control)Public SectorEnergy & Utilities
Insyde UEFI Firmware und Cisco UCS (UEFI Shell Secure Boot): Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
NEOSEC enrichment — no mirror of the original source
Ein Angreifer kann eine Schwachstelle in Insyde UEFI Firmware und Cisco Unified Computing System (UCS) ausnutzen, um den UEFI-Secure-Boot zu umgehen, die Pre-Boot-Umgebung zu manipulieren und beliebigen Code auszuführen.
Source: BSI CERT-Bund WID. For licensing reasons NEOSEC Intel does not mirror the full text verbatim. Full body and expert context live with the original.
Read the issue at BSI CERT-Bund WID →Full advisory
bsi:WID-SEC-2026-3240medium2 linked CVEs
Open advisory with all CVEs →
More on Firmware
Other advisories
- CVE-2026-29797noneEs ist keine Authentifizierung erforderlich, wenn Firmware oder Bootloader aktualisiert werden, was es einfach macht, dass bösartige Dateien auf das Gerät gepusht werden.
- CVE-2026-102368noneBetroffene Tapo-Geräte-Firmware speichert gerätespezifisches kryptografisches Material im Klartext in nichtflüchtigem Speicher.
- CVE-2026-104076noneTVU Networks Empfänger/Sender-Geräte mit Firmware vor Version 7.
- CVE-2026-98363nonefirmware: arm_scpi: reject DVFS OPP count above MAX_DVFS_OPPS
- CVE-2025-70521noneDas Diagnosetool für Ping im Verwaltungsportal der Fanvil x7a-Firmware-Version 2.
- CVE-2025-70520noneDer Websocket-Handler der Firmware-Version 2.
- CVE-2025-70519noneDas Geräteprotokoll-Komponente der Fanvil x7a-Firmware-Version 2.
- CVE-2025-70517noneDer Anforderungshandler der Firmware-Version 2.
Other news entries
- Newssecurityweek2026-10-09Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries
- Newsbleepingcomputer2026-10-08Low-cost Android phones ship with residential proxy malware
- Vulnerabilitybsi-cert-bund-wid2026-09-10Insyde UEFI Firmware und Cisco UCS (UEFI Shell Secure Boot): Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
- Newscsoonline2026-09-09MikroTik patches flaws currently being exploited to take over routers
- Vulnerabilitybsi-cert-bund-wid2026-09-08Siemens SICAM 8: Mehrere Schwachstellen
- Vulnerabilitybsi-cert-bund-wid2026-09-03Dell Computer: Mehrere Schwachstellen
- Newsthehackernews2026-08-28China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access
- Vulnerabilitybsi-cert-bund-wid2026-08-28Insyde UEFI Firmware: Mehrere Schwachstellen
Source: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-3240
ID