Lucene search

K
cve[email protected]CVE-2020-0590
HistoryNov 12, 2020 - 6:15 p.m.

CVE-2020-0590

2020-11-1218:15:13
CWE-20
web.nvd.nist.gov
47
cve-2020-0590
nvd
intel
bios
firmware
input validation
privilege escalation
local access

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

8.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.7%

Improper input validation in BIOS firmware for some Intel® Processors may allow an authenticated user to potentially enable escalation of privilege via local access.

Affected configurations

NVD
Node
intelxeon_bronze_3206rMatch-
AND
intelxeon_bronze_3206r_firmwareMatch-
Node
intelxeon_gold_5218rMatch-
AND
intelxeon_gold_5218r_firmwareMatch-
Node
intelxeon_gold_5220rMatch-
AND
intelxeon_gold_5220r_firmwareMatch-
Node
intelxeon_gold_6208uMatch-
AND
intelxeon_gold_6208u_firmwareMatch-
Node
intelxeon_gold_6226rMatch-
AND
intelxeon_gold_6226r_firmwareMatch-
Node
intelxeon_gold_6230r_firmwareMatch-
AND
intelxeon_gold_6230rMatch-
Node
intelxeon_gold_6238rMatch-
AND
intelxeon_gold_6238r_firmwareMatch-
Node
intelxeon_gold_6240rMatch-
AND
intelxeon_gold_6240r_firmwareMatch-
Node
intelxeon_gold_6242rMatch-
AND
intelxeon_gold_6242r_firmwareMatch-
Node
intelxeon_gold_6246rMatch-
AND
intelxeon_gold_6246r_firmwareMatch-
Node
intelxeon_gold_6248r_firmwareMatch-
AND
intelxeon_gold_6248rMatch-
Node
intelxeon_gold_6250_firmwareMatch-
AND
intelxeon_gold_6250Match-
Node
intelxeon_gold_6250l_firmwareMatch-
AND
intelxeon_gold_6250lMatch-
Node
intelxeon_gold_6256_firmwareMatch-
AND
intelxeon_gold_6256Match-
Node
intelxeon_gold_6258r_firmwareMatch-
AND
intelxeon_gold_6258rMatch-
Node
intelxeon_silver_4210r_firmwareMatch-
AND
intelxeon_silver_4210rMatch-
Node
intelxeon_silver_4210t_firmwareMatch-
AND
intelxeon_silver_4210tMatch-
Node
intelxeon_silver_4214r_firmwareMatch-
AND
intelxeon_silver_4214rMatch-
Node
intelxeon_silver_4215r_firmwareMatch-
AND
intelxeon_silver_4215rMatch-
Node
intelxeon_platinum_9221_firmwareMatch-
AND
intelxeon_platinum_9221Match-
Node
intelxeon_platinum_9222_firmwareMatch-
AND
intelxeon_platinum_9222Match-
Node
intelxeon_bronze_3204_firmwareMatch-
AND
intelxeon_bronze_3204Match-
Node
intelxeon_gold_5215_firmwareMatch-
AND
intelxeon_gold_5215Match-
Node
intelxeon_gold_5215l_firmwareMatch-
AND
intelxeon_gold_5215lMatch-
Node
intelxeon_gold_5217_firmwareMatch-
AND
intelxeon_gold_5217Match-
Node
intelxeon_gold_5218_firmwareMatch-
AND
intelxeon_gold_5218Match-
Node
intelxeon_gold_5218b_firmwareMatch-
AND
intelxeon_gold_5218bMatch-
Node
intelxeon_gold_5218n_firmwareMatch-
AND
intelxeon_gold_5218nMatch-
Node
intelxeon_gold_5218t_firmwareMatch-
AND
intelxeon_gold_5218tMatch-
Node
intelxeon_gold_5220_firmwareMatch-
AND
intelxeon_gold_5220Match-
Node
intelxeon_gold_5220s_firmwareMatch-
AND
intelxeon_gold_5220sMatch-
Node
intelxeon_gold_5220t_firmwareMatch-
AND
intelxeon_gold_5220tMatch-
Node
intelxeon_gold_5222_firmwareMatch-
AND
intelxeon_gold_5222Match-
Node
intelxeon_gold_6209u_firmwareMatch-
AND
intelxeon_gold_6209uMatch-
Node
intelxeon_gold_6210u_firmwareMatch-
AND
intelxeon_gold_6210uMatch-
Node
intelxeon_gold_6212u_firmwareMatch-
AND
intelxeon_gold_6212uMatch-
Node
intelxeon_gold_6222v_firmwareMatch-
AND
intelxeon_gold_6222vMatch-
Node
intelxeon_gold_6226_firmwareMatch-
AND
intelxeon_gold_6226Match-
Node
intelxeon_gold_6230_firmwareMatch-
AND
intelxeon_gold_6230Match-
Node
intelxeon_gold_6230n_firmwareMatch-
AND
intelxeon_gold_6230nMatch-
Node
intelxeon_gold_6230t_firmwareMatch-
AND
intelxeon_gold_6230tMatch-
Node
intelxeon_gold_6234_firmwareMatch-
AND
intelxeon_gold_6234Match-
Node
intelxeon_gold_6238_firmwareMatch-
AND
intelxeon_gold_6238Match-
Node
intelxeon_gold_6238l_firmwareMatch-
AND
intelxeon_gold_6238lMatch-
Node
intelxeon_gold_6238t_firmwareMatch-
AND
intelxeon_gold_6238tMatch-
Node
intelxeon_gold_6240_firmwareMatch-
AND
intelxeon_gold_6240Match-
Node
intelxeon_gold_6240l_firmwareMatch-
AND
intelxeon_gold_6240lMatch-
Node
intelxeon_gold_6240y_firmwareMatch-
AND
intelxeon_gold_6240yMatch-
Node
intelxeon_gold_6242_firmwareMatch-
AND
intelxeon_gold_6242Match-
Node
intelxeon_gold_6244_firmwareMatch-
AND
intelxeon_gold_6244Match-
Node
intelxeon_gold_6246_firmwareMatch-
AND
intelxeon_gold_6246Match-
Node
intelxeon_gold_6248_firmwareMatch-
AND
intelxeon_gold_6248Match-
Node
intelxeon_gold_6252_firmwareMatch-
AND
intelxeon_gold_6252Match-
Node
intelxeon_gold_6252n_firmwareMatch-
AND
intelxeon_gold_6252nMatch-
Node
intelxeon_gold_6254_firmwareMatch-
AND
intelxeon_gold_6254Match-
Node
intelxeon_gold_6262v_firmwareMatch-
AND
intelxeon_gold_6262vMatch-
Node
intelxeon_platinum_8253_firmwareMatch-
AND
intelxeon_platinum_8253Match-
Node
intelxeon_platinum_8256_firmwareMatch-
AND
intelxeon_platinum_8256Match-
Node
intelxeon_platinum_8260_firmwareMatch-
AND
intelxeon_platinum_8260Match-
Node
intelxeon_platinum_8260l_firmwareMatch-
AND
intelxeon_platinum_8260lMatch-
Node
intelxeon_platinum_8260y_firmwareMatch-
AND
intelxeon_platinum_8260yMatch-
Node
intelxeon_platinum_8268_firmwareMatch-
AND
intelxeon_platinum_8268Match-
Node
intelxeon_platinum_8270_firmwareMatch-
AND
intelxeon_platinum_8270Match-
Node
intelxeon_platinum_8276_firmwareMatch-
AND
intelxeon_platinum_8276Match-
Node
intelxeon_platinum_8276l_firmwareMatch-
AND
intelxeon_platinum_8276lMatch-
Node
intelxeon_platinum_8280_firmwareMatch-
AND
intelxeon_platinum_8280Match-
Node
intelxeon_platinum_8280l_firmwareMatch-
AND
intelxeon_platinum_8280lMatch-
Node
intelxeon_platinum_9242_firmwareMatch-
AND
intelxeon_platinum_9242Match-
Node
intelxeon_platinum_9282_firmwareMatch-
AND
intelxeon_platinum_9282Match-
Node
intelxeon_silver_4208_firmwareMatch-
AND
intelxeon_silver_4208Match-
Node
intelxeon_silver_4209t_firmwareMatch-
AND
intelxeon_silver_4209tMatch-
Node
intelxeon_silver_4210_firmwareMatch-
AND
intelxeon_silver_4210Match-
Node
intelxeon_silver_4214_firmwareMatch-
AND
intelxeon_silver_4214Match-
Node
intelxeon_silver_4214y_firmwareMatch-
AND
intelxeon_silver_4214yMatch-
Node
intelxeon_silver_4215_firmwareMatch-
AND
intelxeon_silver_4215Match-
Node
intelxeon_silver_4216_firmwareMatch-
AND
intelxeon_silver_4216Match-
Node
intelxeon_gold_6138p_firmwareMatch-
AND
intelxeon_gold_6138pMatch-
Node
intelxeon_bronze_3104_firmwareMatch-
AND
intelxeon_bronze_3104Match-
Node
intelxeon_bronze_3106_firmwareMatch-
AND
intelxeon_bronze_3106Match-
Node
intelxeon_gold_5115_firmwareMatch-
AND
intelxeon_gold_5115Match-
Node
intelxeon_gold_5118_firmwareMatch-
AND
intelxeon_gold_5118Match-
Node
intelxeon_gold_5119t_firmwareMatch-
AND
intelxeon_gold_5119tMatch-
Node
intelxeon_gold_5120_firmwareMatch-
AND
intelxeon_gold_5120Match-
Node
intelxeon_gold_5120t_firmwareMatch-
AND
intelxeon_gold_5120tMatch-
Node
intelxeon_gold_5122_firmwareMatch-
AND
intelxeon_gold_5122Match-
Node
intelxeon_gold_6126_firmwareMatch-
AND
intelxeon_gold_6126Match-
Node
intelxeon_gold_6126f_firmwareMatch-
AND
intelxeon_gold_6126fMatch-
Node
intelxeon_gold_6126t_firmwareMatch-
AND
intelxeon_gold_6126tMatch-
Node
intelxeon_gold_6128_firmwareMatch-
AND
intelxeon_gold_6128Match-
Node
intelxeon_gold_6130_firmwareMatch-
AND
intelxeon_gold_6130Match-
Node
intelxeon_gold_6130f_firmwareMatch-
AND
intelxeon_gold_6130fMatch-
Node
intelxeon_gold_6130t_firmwareMatch-
AND
intelxeon_gold_6130tMatch-
Node
intelxeon_gold_6132_firmwareMatch-
AND
intelxeon_gold_6132Match-
Node
intelxeon_gold_6134_firmwareMatch-
AND
intelxeon_gold_6134Match-
Node
intelxeon_gold_6136_firmwareMatch-
AND
intelxeon_gold_6136Match-
Node
intelxeon_gold_6138_firmwareMatch-
AND
intelxeon_gold_6138Match-
Node
intelxeon_gold_6138f_firmwareMatch-
AND
intelxeon_gold_6138fMatch-
Node
intelxeon_gold_6138t_firmwareMatch-
AND
intelxeon_gold_6138tMatch-
Node
intelxeon_gold_6140_firmwareMatch-
AND
intelxeon_gold_6140Match-
Node
intelxeon_gold_6142_firmwareMatch-
AND
intelxeon_gold_6142Match-
Node
intelxeon_gold_6142f_firmwareMatch-
AND
intelxeon_gold_6142fMatch-
Node
intelxeon_gold_6144_firmwareMatch-
AND
intelxeon_gold_6144Match-
Node
intelxeon_gold_6146_firmwareMatch-
AND
intelxeon_gold_6146Match-
Node
intelxeon_gold_6148_firmwareMatch-
AND
intelxeon_gold_6148Match-
Node
intelxeon_gold_6148f_firmwareMatch-
AND
intelxeon_gold_6148fMatch-
Node
intelxeon_gold_6150_firmwareMatch-
AND
intelxeon_gold_6150Match-
Node
intelxeon_gold_6152_firmwareMatch-
AND
intelxeon_gold_6152Match-
Node
intelxeon_gold_6154_firmwareMatch-
AND
intelxeon_gold_6154Match-
Node
intelxeon_platinum_8153_firmwareMatch-
AND
intelxeon_platinum_8153Match-
Node
intelxeon_platinum_8156_firmwareMatch-
AND
intelxeon_platinum_8156Match-
Node
intelxeon_platinum_8158_firmwareMatch-
AND
intelxeon_platinum_8158Match-
Node
intelxeon_platinum_8160_firmwareMatch-
AND
intelxeon_platinum_8160Match-
Node
intelxeon_platinum_8160f_firmwareMatch-
AND
intelxeon_platinum_8160fMatch-
Node
intelxeon_platinum_8160t_firmwareMatch-
AND
intelxeon_platinum_8160tMatch-
Node
intelxeon_platinum_8164_firmwareMatch-
AND
intelxeon_platinum_8164Match-
Node
intelxeon_platinum_8168_firmwareMatch-
AND
intelxeon_platinum_8168Match-
Node
intelxeon_platinum_8170_firmwareMatch-
AND
intelxeon_platinum_8170Match-
Node
intelxeon_platinum_8176_firmwareMatch-
AND
intelxeon_platinum_8176Match-
Node
intelxeon_platinum_8176f_firmwareMatch-
AND
intelxeon_platinum_8176fMatch-
Node
intelxeon_platinum_8180_firmwareMatch-
AND
intelxeon_platinum_8180Match-
Node
intelxeon_silver_4108_firmwareMatch-
AND
intelxeon_silver_4108Match-
Node
intelxeon_silver_4109t_firmwareMatch-
AND
intelxeon_silver_4109tMatch-
Node
intelxeon_silver_4110_firmwareMatch-
AND
intelxeon_silver_4110Match-
Node
intelxeon_silver_4112_firmwareMatch-
AND
intelxeon_silver_4112Match-
Node
intelxeon_silver_4114_firmwareMatch-
AND
intelxeon_silver_4114Match-
Node
intelxeon_silver_4114t_firmwareMatch-
AND
intelxeon_silver_4114tMatch-
Node
intelxeon_silver_4116_firmwareMatch-
AND
intelxeon_silver_4116Match-
Node
intelxeon_silver_4116t_firmwareMatch-
AND
intelxeon_silver_4116tMatch-
Node
netappcloud_backupMatch-
OR
netappclustered_data_ontapMatch-
OR
netappfas\/aff_biosMatch-
Node
siemenssimatic_ipc527g_firmwareRange<1.4.0
AND
siemenssimatic_ipc527gMatch-
Node
siemenssimatic_ipc547g_firmwareRange<r1.30.0
AND
siemenssimatic_ipc547gMatch-
Node
siemenssimatic_ipc627e_firmwareRange<25.02.08
AND
siemenssimatic_ipc627eMatch-
Node
siemenssimatic_ipc647e_firmwareRange<25.02.08
AND
siemenssimatic_ipc647eMatch-
Node
siemenssimatic_ipc677e_firmwareRange<25.02.08
AND
siemenssimatic_ipc677eMatch-
Node
siemenssimatic_ipc847e_firmwareRange<25.02.08
AND
siemenssimatic_ipc847eMatch-

CNA Affected

[
  {
    "product": "Intel(R) Processors",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "See references"
      }
    ]
  }
]

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

8.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.7%