CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:L/AC:L/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
12.6%
BMC Firmware in Intel server boards, compute modules, and systems potentially allow an attacker with administrative privileges to make unauthorized read\writes to the SMBUS.
Vendor | Product | Version | CPE |
---|---|---|---|
intel | bmc_firmware | - | cpe:2.3:o:intel:bmc_firmware:-:*:*:*:*:*:*:* |
intel | bbs2600bpb | - | cpe:2.3:h:intel:bbs2600bpb:-:*:*:*:*:*:*:* |
intel | bbs2600bpq | - | cpe:2.3:h:intel:bbs2600bpq:-:*:*:*:*:*:*:* |
intel | bbs2600bps | - | cpe:2.3:h:intel:bbs2600bps:-:*:*:*:*:*:*:* |
intel | bbs2600stb | - | cpe:2.3:h:intel:bbs2600stb:-:*:*:*:*:*:*:* |
intel | bbs2600stq | - | cpe:2.3:h:intel:bbs2600stq:-:*:*:*:*:*:*:* |
intel | bbs7200ap | - | cpe:2.3:h:intel:bbs7200ap:-:*:*:*:*:*:*:* |
intel | bbs7200apl | - | cpe:2.3:h:intel:bbs7200apl:-:*:*:*:*:*:*:* |
intel | dbs2600cw2r | - | cpe:2.3:h:intel:dbs2600cw2r:-:*:*:*:*:*:*:* |
intel | dbs2600cw2sr | - | cpe:2.3:h:intel:dbs2600cw2sr:-:*:*:*:*:*:*:* |
[
{
"product": "Intel Server Boards, Compute Modules and Systems",
"vendor": "Intel Corporation",
"versions": [
{
"status": "affected",
"version": "BMC Equipped"
}
]
}
]
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:L/AC:L/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
12.6%