CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
9.0%
Buffer overflow in some Intelยฎ Server Board BMC firmware before version 2.90 may allow a privileged user to enable escalation of privilege via local access.
Vendor | Product | Version | CPE |
---|---|---|---|
intel | server_system_d50tnp1mhcrlc_firmware | * | cpe:2.3:o:intel:server_system_d50tnp1mhcrlc_firmware:*:*:*:*:*:*:*:* |
intel | server_system_d50tnp1mhcrlc | - | cpe:2.3:h:intel:server_system_d50tnp1mhcrlc:-:*:*:*:*:*:*:* |
intel | server_system_d50tnp1mhcpac_firmware | * | cpe:2.3:o:intel:server_system_d50tnp1mhcpac_firmware:*:*:*:*:*:*:*:* |
intel | server_system_d50tnp1mhcpac | - | cpe:2.3:h:intel:server_system_d50tnp1mhcpac:-:*:*:*:*:*:*:* |
intel | server_system_d50tnp2mhsvac_firmware | * | cpe:2.3:o:intel:server_system_d50tnp2mhsvac_firmware:*:*:*:*:*:*:*:* |
intel | server_system_d50tnp2mhsvac | - | cpe:2.3:h:intel:server_system_d50tnp2mhsvac:-:*:*:*:*:*:*:* |
intel | server_system_d50tnp2mhstac_firmware | * | cpe:2.3:o:intel:server_system_d50tnp2mhstac_firmware:*:*:*:*:*:*:*:* |
intel | server_system_d50tnp2mhstac | - | cpe:2.3:h:intel:server_system_d50tnp2mhstac:-:*:*:*:*:*:*:* |
intel | server_system_d50tnp1mhcrac_firmware | * | cpe:2.3:o:intel:server_system_d50tnp1mhcrac_firmware:*:*:*:*:*:*:*:* |
intel | server_system_d50tnp1mhcrac | - | cpe:2.3:h:intel:server_system_d50tnp1mhcrac:-:*:*:*:*:*:*:* |
[
{
"vendor": "n/a",
"product": "Intel(R) Server Board BMC firmware",
"versions": [
{
"version": "before version 2.90",
"status": "affected"
}
],
"defaultStatus": "unaffected"
}
]