# CVE-2026-33197

## Summary

- **CVE ID:** CVE-2026-33197
- **Severity:** HIGH
- **CVSS Score:** 8.7 (CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H)
- **CWE:** CWE-184
- **Published:** Sep 8, 2026
- **Last Modified:** Sep 8, 2026

## Description

AMI APTIOV contains a vulnerability in BIOS where a privileged user may cause the “Incomplete List of Disallowed Inputs” by local access. Successful exploitation of this vulnerability may lead to arbitrary code execution and impact system Confidentiality, Integrity, and Availability.

## Affected Products

- AMI — AptioV (AptioV_5.0)

## References

- [CNA](https://go.ami.com/hubfs/Security%20Advisories/2026/AMI-SA-2026001.pdf)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.12%
- **EPSS Percentile:** 2.3

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._