Improper access control in System Management Mode (SMM) may allow an attacker to write to SPI ROM potentially leading to arbitrary code execution.
Conclusion & alert: CVE-2022-23821 is rated Moderate Risk (60.1/100): CVSS Critical severity, with medium exploitation likelihood (EPSS 0.99%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.33% | 0.99% | +0.66% |
| 2 | 2026-05-30 | 0.43% | 0.33% | -0.10% |
| 3 | 2026-04-13 | — | 0.43% | — |
Full EPSS history (15 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.8 | 3.1 | CRITICAL |
|
3.9 | 5.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| amd | ryzen_9_3900_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_9_3900_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_9_3900_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_9_3900_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_9_3900x_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_9_3900x_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_9_3900x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_9_3900x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_9_3900xt_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_9_3900xt_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_9_3900xt_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_9_3900xt_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_9_3950x_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_9_3950x_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_9_3950x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_9_3950x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_7_3700x_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_7_3700x_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_7_3700x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_7_3700x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_7_3800x_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_7_3800x_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_7_3800x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_7_3800x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_7_3800xt_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_7_3800xt_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_7_3800xt_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_7_3800xt_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_3500_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_3500_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_3500_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_3500_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_3500x_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_3500x_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_3500x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_3500x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_3600_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_3600_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_3600_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_3600_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_3600x_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_3600x_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_3600x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_3600x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_3600xt_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_3600xt_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_3600xt_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_3600xt_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_3_3100_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_3_3100_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_3_3100_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_3_3100_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_3_3300x_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_3_3300x_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_3_3300x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_3_3300x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_9_5900_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_9_5900_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_9_5900x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_9_5900x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_9_5950x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_9_5950x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_9_pro_5945_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_9_pro_5945_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_7_pro_5845_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_7_pro_5845_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_7_5800_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_7_5800_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_7_5800x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_7_5800x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_7_5700x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_7_5700x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_5600_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_5600_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_5600x_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_5600x_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_56003xd_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_56003xd_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_5645_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_pro_5645_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_5500_firmware | comboam4v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_5500_firmware:comboam4v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_5500x_firmware | comboam4v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_5500x_firmware:comboam4v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_55003xd_firmware | comboam4v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_55003xd_firmware:comboam4v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_7_5700_firmware | comboam4v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_7_5700_firmware:comboam4v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_3_5100_firmware | comboam4v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_3_5100_firmware:comboam4v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_3400g_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_pro_3400g_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_3400g_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_pro_3400g_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_3400ge_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_pro_3400ge_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_3400ge_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_pro_3400ge_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_3350g_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_pro_3350g_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_3350g_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_pro_3350g_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_3350ge_firmware | comboam4_pi_1.0.0.9 | cpe:2.3:o:amd:ryzen_5_pro_3350ge_firmware:comboam4_pi_1.0.0.9:*:*:*:*:*:*:* |
| amd | ryzen_5_pro_3350ge_firmware | comboam4_v2_pi_1.2.0.8 | cpe:2.3:o:amd:ryzen_5_pro_3350ge_firmware:comboam4_v2_pi_1.2.0.8:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_2990wx_firmware | summitpi-sp3r2_1.1.0.6 | cpe:2.3:o:amd:ryzen_threadripper_2990wx_firmware:summitpi-sp3r2_1.1.0.6:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_2970wx_firmware | summitpi-sp3r2_1.1.0.6 | cpe:2.3:o:amd:ryzen_threadripper_2970wx_firmware:summitpi-sp3r2_1.1.0.6:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_2950x_firmware | summitpi-sp3r2_1.1.0.6 | cpe:2.3:o:amd:ryzen_threadripper_2950x_firmware:summitpi-sp3r2_1.1.0.6:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_2920x_firmware | summitpi-sp3r2_1.1.0.6 | cpe:2.3:o:amd:ryzen_threadripper_2920x_firmware:summitpi-sp3r2_1.1.0.6:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_pro_3995wx_firmware | castlepeakpi-sp3r2_1.1.0.8 | cpe:2.3:o:amd:ryzen_threadripper_pro_3995wx_firmware:castlepeakpi-sp3r2_1.1.0.8:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_pro_3975wx_firmware | castlepeakpi-sp3r2_1.1.0.8 | cpe:2.3:o:amd:ryzen_threadripper_pro_3975wx_firmware:castlepeakpi-sp3r2_1.1.0.8:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_pro_3955wx_firmware | castlepeakpi-sp3r2_1.1.0.8 | cpe:2.3:o:amd:ryzen_threadripper_pro_3955wx_firmware:castlepeakpi-sp3r2_1.1.0.8:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_pro_3945wx_firmware | castlepeakpi-sp3r2_1.1.0.8 | cpe:2.3:o:amd:ryzen_threadripper_pro_3945wx_firmware:castlepeakpi-sp3r2_1.1.0.8:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_3990x_firmware | castlepeakpi-sp3r2_1.1.0.8 | cpe:2.3:o:amd:ryzen_threadripper_3990x_firmware:castlepeakpi-sp3r2_1.1.0.8:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_3970x_firmware | castlepeakpi-sp3r2_1.1.0.8 | cpe:2.3:o:amd:ryzen_threadripper_3970x_firmware:castlepeakpi-sp3r2_1.1.0.8:*:*:*:*:*:*:* |
| amd | ryzen_threadripper_3960x_firmware | castlepeakpi-sp3r2_1.1.0.8 | cpe:2.3:o:amd:ryzen_threadripper_3960x_firmware:castlepeakpi-sp3r2_1.1.0.8:*:*:*:*:*:*:* |
| amd | ryzen_3_3250u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_3_3250u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_3_3250c_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_3_3250c_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_3_3200u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_3_3200u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | athlon_3015e_firmware | pollockpi-ft5_1.0.0.5 | cpe:2.3:o:amd:athlon_3015e_firmware:pollockpi-ft5_1.0.0.5:*:*:*:*:*:*:* |
| amd | athlon_3015ce_firmware | pollockpi-ft5_1.0.0.5 | cpe:2.3:o:amd:athlon_3015ce_firmware:pollockpi-ft5_1.0.0.5:*:*:*:*:*:*:* |
| amd | ryzen_7_3780u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_7_3780u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_7_3750h_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_7_3750h_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_7_3700c_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_7_3700c_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_7_3700u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_7_3700u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_5_3580u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3580u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_5_3550h_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3550h_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_5_3500c_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3500c_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_5_3500u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3500u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_5_3450u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_5_3450u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_3_3350u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_3_3350u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |
| amd | ryzen_3_3300u_firmware | picassopi-fp5_1.0.0.e | cpe:2.3:o:amd:ryzen_3_3300u_firmware:picassopi-fp5_1.0.0.e:*:*:*:*:*:*:* |