6.8
CVE-2020-0566
- EPSS 0.23%
- Veröffentlicht 15.06.2020 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:53:46
- Quelle secure@intel.com
- CVE-Watchlists
- Unerledigt
Improper Access Control in subsystem for Intel(R) TXE versions before 3.175 and 4.0.25 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Trusted Execution Engine Firmware Version >= 3.0 <= 3.1.70
Intel ≫ Trusted Execution Engine Firmware Version >= 4.0 <= 4.0.20
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.45 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 0.9 | 5.9 |
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|