Improper Authentication Vulnerability in Intel SSDs DC S4500 and DC S4600 Series
CVE-2018-18095

6.8MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
11 July 2019

Summary

An improper authentication vulnerability exists in the firmware of Intel SSD DC S4500 and DC S4600 Series prior to version SCV10150. This flaw may enable an unprivileged user with physical access to potentially escalate privileges, allowing them to execute unauthorized actions on the device. It is crucial for users to ensure their firmware is up-to-date to mitigate the risk associated with this vulnerability.

Affected Version(s)

Intel(R) SSD DC S4500/S4600 Series before SCV10150

References

CVSS V3.1

Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.