CVE-2020-14032: Asrock Box-r1000 Firmware

Critical severity, CVSS 9.8. EPSS: 2.1% chance of exploitation in the next 30 days.

ASRock 4x4 BOX-R1000 before BIOS P1.40 allows privilege escalation via code execution in the SMM.

Affected products

  • Asrock Box-r1000 Firmware: before 1.40 (fixed in 1.40)

Published 2021-07-23. Last modified 2026-06-17.