5.5

CVE-2020-8698

Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

Data is provided by the National Vulnerability Database (NVD)
IntelMicrocode Version-
   IntelCore I3-1000g1 Version-
   IntelCore I3-1000g4 Version-
   IntelCore I3-1005g1 Version-
   IntelCore I3-1110g4 Version-
   IntelCore I3-1115g4 Version-
   IntelCore I3-1120g4 Version-
   IntelCore I3-1125g4 Version-
   IntelCore I5-1030g4 Version-
   IntelCore I5-1030g7 Version-
   IntelCore I5-1035g1 Version-
   IntelCore I5-1035g4 Version-
   IntelCore I5-1035g7 Version-
   IntelCore I5-1130g7 Version-
   IntelCore I5-1135g7 Version-
   IntelCore I7-1060g7 Version-
   IntelCore I7-1065g7 Version-
   IntelCore I7-1160g7 Version-
   IntelCore I7-1165g7 Version-
   IntelCore I7-1185g7 Version-
NetappHci Compute Node Bios Version-
   NetappHci Compute Node Version-
NetappHci Storage Node Bios Version-
   NetappHci Storage Node Version-
NetappSolidfire Bios Version-
   NetappSolidfire Version-
FedoraprojectFedora Version31
DebianDebian Linux Version9.0
SiemensSimatic Field Pg M5 Firmware Version < 22.01.08
   SiemensSimatic Field Pg M5 Version-
SiemensSimatic Ipc427e Firmware Version < 21.01.15
   SiemensSimatic Ipc427e Version-
SiemensSimatic Ipc477e Firmware Version < 21.01.15
   SiemensSimatic Ipc477e Version-
SiemensSimatic Ipc477e Pro Firmware Version < 21.01.15
   SiemensSimatic Ipc477e Pro Version-
SiemensSimatic Ipc627e Firmware Version < 25.02.08
   SiemensSimatic Ipc627e Version-
SiemensSimatic Ipc647e Firmware Version < 25.02.08
   SiemensSimatic Ipc647e Version-
SiemensSimatic Ipc677e Firmware Version < 25.02.08
   SiemensSimatic Ipc677e Version-
SiemensSimatic Ipc847e Firmware Version < 25.02.08
   SiemensSimatic Ipc847e Version-
SiemensSimatic Itp1000 Firmware Version < 23.01.08
   SiemensSimatic Itp1000 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.21% 0.428
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:P/I:N/A:N
CWE-668 Exposure of Resource to Wrong Sphere

The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.