Lucene search

K
nvd[email protected]NVD:CVE-2020-24495
HistoryFeb 17, 2021 - 2:15 p.m.

CVE-2020-24495

2021-02-1714:15:17
web.nvd.nist.gov
4
cve-2020-24495
access control
firmware
intel 700-series
ethernet controllers
denial of service

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

CVSS3

4.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

EPSS

0

Percentile

12.6%

Insufficient access control in the firmware for the Intelยฎ 700-series of Ethernet Controllers before version 7.3 may allow a privileged user to potentially enable denial of service via local access.

Affected configurations

Nvd
Node
intelethernet_network_adapter_700_firmwareRange<7.3
AND
intelethernet_network_adapter_v710-at2Match-
OR
intelethernet_network_adapter_x710-am2Match-
OR
intelethernet_network_adapter_x710-at2Match-
OR
intelethernet_network_adapter_x710-bm2Match-
OR
intelethernet_network_adapter_x710-da2Match-
OR
intelethernet_network_adapter_x710-da2_for_ocpMatch-
OR
intelethernet_network_adapter_x710-da2_for_ocp_3.0Match-
OR
intelethernet_network_adapter_x710-da4Match-
OR
intelethernet_network_adapter_x710-da4_for_ocp_3.0Match-
OR
intelethernet_network_adapter_x710-t2lMatch-
OR
intelethernet_network_adapter_x710-t2l_for_ocp_3.0Match-
OR
intelethernet_network_adapter_x710-t4Match-
OR
intelethernet_network_adapter_x710-t4lMatch-
OR
intelethernet_network_adapter_x710-t4l_for_ocp_3.0Match-
OR
intelethernet_network_adapter_x710-tm4Match-
OR
intelethernet_network_adapter_x722-da2Match-
OR
intelethernet_network_adapter_x722-da4Match-
OR
intelethernet_network_adapter_xl710-am1Match-
OR
intelethernet_network_adapter_xl710-am2Match-
OR
intelethernet_network_adapter_xl710-bm1Match-
OR
intelethernet_network_adapter_xl710-bm2Match-
OR
intelethernet_network_adapter_xl710-qda1Match-
OR
intelethernet_network_adapter_xl710-qda1_for_open_compute_projectMatch-
OR
intelethernet_network_adapter_xl710-qda2_for_open_compute_projectMatch-
OR
intelethernet_network_adapter_xlk710-qda2Match-
OR
intelethernet_network_adapter_xxv710-am1Match-
OR
intelethernet_network_adapter_xxv710-am2Match-
OR
intelethernet_network_adapter_xxv710-da1Match-
OR
intelethernet_network_adapter_xxv710-da1_for_ocpMatch-
OR
intelethernet_network_adapter_xxv710-da2Match-
OR
intelethernet_network_adapter_xxv710-da2tMatch-
OR
intelethernet_network_adapter_xxv710-dax_for_ocpMatch-
VendorProductVersionCPE
intelethernet_network_adapter_700_firmware*cpe:2.3:o:intel:ethernet_network_adapter_700_firmware:*:*:*:*:*:*:*:*
intelethernet_network_adapter_v710-at2-cpe:2.3:h:intel:ethernet_network_adapter_v710-at2:-:*:*:*:*:*:*:*
intelethernet_network_adapter_x710-am2-cpe:2.3:h:intel:ethernet_network_adapter_x710-am2:-:*:*:*:*:*:*:*
intelethernet_network_adapter_x710-at2-cpe:2.3:h:intel:ethernet_network_adapter_x710-at2:-:*:*:*:*:*:*:*
intelethernet_network_adapter_x710-bm2-cpe:2.3:h:intel:ethernet_network_adapter_x710-bm2:-:*:*:*:*:*:*:*
intelethernet_network_adapter_x710-da2-cpe:2.3:h:intel:ethernet_network_adapter_x710-da2:-:*:*:*:*:*:*:*
intelethernet_network_adapter_x710-da2_for_ocp-cpe:2.3:h:intel:ethernet_network_adapter_x710-da2_for_ocp:-:*:*:*:*:*:*:*
intelethernet_network_adapter_x710-da2_for_ocp_3.0-cpe:2.3:h:intel:ethernet_network_adapter_x710-da2_for_ocp_3.0:-:*:*:*:*:*:*:*
intelethernet_network_adapter_x710-da4-cpe:2.3:h:intel:ethernet_network_adapter_x710-da4:-:*:*:*:*:*:*:*
intelethernet_network_adapter_x710-da4_for_ocp_3.0-cpe:2.3:h:intel:ethernet_network_adapter_x710-da4_for_ocp_3.0:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 331

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

CVSS3

4.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

EPSS

0

Percentile

12.6%

Related for NVD:CVE-2020-24495