8.2
CVE-2020-12300
- EPSS 0.15%
- Published 13.08.2020 04:15:13
- Last modified 21.11.2024 04:59:28
- Source secure@intel.com
- Teams watchlist Login
- Open Login
Uninitialized pointer in BIOS firmware for Intel(R) Server Board Families S2600CW, S2600KP, S2600TP, and S2600WT may allow a privileged user to potentially enable escalation of privilege via local access.
Data is provided by the National Vulnerability Database (NVD)
Intel ≫ S2600cw2 Firmware Version < 01.01.0029
Intel ≫ S2600cw2s Firmware Version < 01.01.0029
Intel ≫ S2600cwt Firmware Version < 01.01.0029
Intel ≫ S2600cwts Firmware Version < 01.01.0029
Intel ≫ S2600cw2r Firmware Version < 01.01.0029
Intel ≫ S2600cw2sr Firmware Version < 01.01.0029
Intel ≫ S2600cwtr Firmware Version < 01.01.0029
Intel ≫ S2600cwtsr Firmware Version < 01.01.0029
Intel ≫ S2600kp Firmware Version < 01.01.0029
Intel ≫ S2600kpf Firmware Version < 01.01.0029
Intel ≫ S2600kpr Firmware Version < 01.01.0029
Intel ≫ S2600kpfr Firmware Version < 01.01.0029
Intel ≫ S2600kptr Firmware Version < 01.01.0029
Intel ≫ S2600tp Firmware Version < 01.01.0029
Intel ≫ S2600tpf Firmware Version < 01.01.0029
Intel ≫ S2600tpfr Firmware Version < 01.01.0029
Intel ≫ S2600tpnr Firmware Version < 01.01.0029
Intel ≫ S2600tpr Firmware Version < 01.01.0029
Intel ≫ S2600wt2 Firmware Version < 01.01.0029
Intel ≫ S2600wtt Firmware Version < 01.01.0029
Intel ≫ S2600wttr Firmware Version < 01.01.0029
Intel ≫ S2600wt2r Firmware Version < 01.01.0029
Intel ≫ S2600wtts1r Firmware Version < 01.01.0029
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.15% | 0.322 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 8.2 | 1.5 | 6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
|
nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
CWE-824 Access of Uninitialized Pointer
The product accesses or uses a pointer that has not been initialized.