CVE-2026-40677
7.7HIGH
Key Information:
- Vendor
Amd
- Vendor
- CVE Published:
- 12 June 2026
What is CVE-2026-40677?
The use of insecure HTTP transport within AMD optional tools could allow an attacker to conduct a man-in-the-middle attack, potentially leading to arbitrary code execution.
Affected Version(s)
AMD Management Console (AMC) 14.0.0
AMD Ryzen™ Master 2.14.3
AMD µProf 5.3