Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-35407

25
FAUCET Score

CVE-2022-35407 is a high-severity stack buffer overflow vulnerability affecting Insyde InsydeH2O firmware kernels 5.0 through 5.5 on Intel platforms. This flaw allows an authenticated local attacker to achieve arbitrary code execution within the SetupUtility driver by manipulating UEFI variables, leading to complete compromise of confidentiality, integrity, and availability. While the CVSS score is 7.8, indicating significant risk, there is currently no public exploit code available, nor is there any evidence of active exploitation or community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.0, <= 5.5CPE matchmatch criteria
cpe:2.3:o:insyde:kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.23%
Probability of exploitation in next 30 days
EPSS Percentile
14.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0023 is in the 45th percentile among its peer group of 16,994 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (4)

ciscopatch availablevia llm_extracted
View patch
crowdstrikepatch availablevia llm_extracted
View patch
curlvendor investigatingvia llm_extracted
gcpvendor investigatingvia llm_extracted

Vendor Advisories (4)

ciscollm-cisco-2bd26277c2614ce2HIGH

Insyde BIOS Buffer Overflow in certain HP ARM-Based PCs

Oct 21, 2025
gcpllm-gcp-2c9082b4263b8d6bHIGH

Insyde BIOS Buffer Overflow in certain HP ARM-Based PCs

Oct 21, 2025
curlllm-curl-c9fc0eec624331edHIGH

Insyde BIOS Buffer Overflow in certain HP ARM-Based PCs

Oct 21, 2025
crowdstrikellm-crowdstrike-d78d37337b38b0d9HIGH

Insyde BIOS Buffer Overflow in certain HP ARM-Based PCs

Oct 21, 2025

References

insyde.com / security-pledge
Vendor Advisory
insyde.com / security-pledge/SA-2022040
Vendor Advisory