CVE-2023-48010 describes a critical missing protection mechanism in STMicroelectronics SPC58 PowerPC microcontrollers, allowing supervisor-level code to disable the System Memory Protection Unit and gain full read/write access to protected assets. With a CVSS score of 9.8 (Critical), this vulnerability has a network attack vector, low attack complexity, and results in complete compromise of confidentiality, integrity, and availability. There is currently no public exploit code available, nor is it listed on the KEV catalog, indicating no active exploitation. Community discussion and media coverage are minimal, which is typical for most CVEs.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| N/A | N/A | n/aCNA affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.