<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://exploit-radar.com/en/flux/categories/materiel.xml</id>
  <title>Exploit Radar: Hardware, firmware and drivers</title>
  <subtitle>The latest additions to CISA’s catalog of exploited vulnerabilities in the “Hardware, firmware and drivers” category (indicative classification).</subtitle>
  <link rel="self" type="application/atom+xml" href="https://exploit-radar.com/en/flux/categories/materiel.xml"/>
  <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/produits/materiel/"/>
  <updated>2025-12-17T00:00:00Z</updated>
  <author><name>Exploit Radar</name></author>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-59374/</id>
    <title>CVE-2025-59374 — ASUS Live Update</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-59374/"/>
    <updated>2025-12-17T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ASUS; if none are available, stop using the product. For cloud services, follow the guidance from ASUS. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on December 17, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-54085/</id>
    <title>CVE-2024-54085 — AMI MegaRAC SPx</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-54085/"/>
    <updated>2025-06-25T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from AMI; if none are available, stop using the product. For cloud services, follow the guidance from AMI. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on June 25, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2015-2291/</id>
    <title>CVE-2015-2291 — Intel Ethernet Diagnostics Driver for Windows</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2015-2291/"/>
    <updated>2023-02-10T00:00:00Z</updated>
    <summary type="text">Apply the security update from Intel. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-19323/</id>
    <title>CVE-2018-19323 — GIGABYTE App Center / AORUS (pilote GDrv)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-19323/"/>
    <updated>2022-10-24T00:00:00Z</updated>
    <summary type="text">Apply the security update from GIGABYTE. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on October 24, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-19320/</id>
    <title>CVE-2018-19320 — GIGABYTE App Center / AORUS (pilote GDrv)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-19320/"/>
    <updated>2022-10-24T00:00:00Z</updated>
    <summary type="text">Apply the security update from GIGABYTE. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on October 24, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-19321/</id>
    <title>CVE-2018-19321 — GIGABYTE App Center / AORUS (pilote GDrv)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-19321/"/>
    <updated>2022-10-24T00:00:00Z</updated>
    <summary type="text">Apply the security update from GIGABYTE. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on October 24, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-19322/</id>
    <title>CVE-2018-19322 — GIGABYTE App Center / AORUS (pilote GDrv)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-19322/"/>
    <updated>2022-10-24T00:00:00Z</updated>
    <summary type="text">Apply the security update from GIGABYTE. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on October 24, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-21551/</id>
    <title>CVE-2021-21551 — Dell dbutil Driver</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-21551/"/>
    <updated>2022-03-31T00:00:00Z</updated>
    <summary type="text">Apply the security update from Dell. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 31, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-5689/</id>
    <title>CVE-2017-5689 — Intel Active Management Technology (AMT)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-5689/"/>
    <updated>2022-01-28T00:00:00Z</updated>
    <summary type="text">Apply the security update from Intel. CISA deadline: 181 days. Added to CISA’s catalog of exploited vulnerabilities on January 28, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-27562/</id>
    <title>CVE-2021-27562 — Arm Trusted Firmware</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-27562/"/>
    <updated>2021-11-03T00:00:00Z</updated>
    <summary type="text">Apply the security update from Arm. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on November 3, 2021.</summary>
  </entry>
</feed>
