CVE-2023-20522: AMD Milanpi Firmware

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of service.

Affected products

  • AMD Milanpi Firmware: before 1.0.0.5 (fixed in 1.0.0.5)
  • AMD Romepi Firmware: before 100d (fixed in 100d)

Published 2023-01-11. Last modified 2026-06-17.