Improper Handling of Insufficient Permissions in APTIOV BIOS
CVE-2025-58770

7.2HIGH

Key Information:

Vendor

Ami

Status
Vendor
CVE Published:
12 December 2025

What is CVE-2025-58770?

The APTIOV BIOS by AMI contains a significant vulnerability that arises from an improper handling of user permissions. This issue allows local users to exploit insufficient permissions, potentially leading to an escalation of privileges. If successfully exploited, this vulnerability could compromise system integrity and availability, posing serious risks to affected systems.

Affected Version(s)

AptioV AptioV_5.0

References

CVSS V4

Score:
7.2
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-58770 : Improper Handling of Insufficient Permissions in APTIOV BIOS