CVE-2026-84696: Phison Electronics Corporation PS3111-s11 Controller Firmware
High severity, CVSS 8.2. EPSS: 0.2% chance of exploitation in the next 30 days.
Phison PS3111-S11 controller firmware versions through SBFQT1.3 expose privileged vendor unique commands over the ATA interface with absent or defeatable authentication mechanisms. Attackers can bypass the weak CRC-16 based unlock handshake or exploit builds with no VUC lock to read and write controller memory and raw flash, persisting implants across power cycles.
Affected products
- Phison Electronics Corporation PS3111-s11 Controller Firmware
Published 2026-09-02. Last modified 2026-09-10.