Improper Access Control in Intel® FPGA Programmable Acceleration Card N3000
CVE-2019-14626
6.7MEDIUM
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 12 March 2020
Summary
Improper access control in the PCIe functionality of the Intel® FPGA Programmable Acceleration Card N3000 could allow a privileged user to potentially escalate their privileges through local access. This vulnerability affects all versions of the card, highlighting a critical need for heightened security measures and oversight in environments utilizing this hardware.
Affected Version(s)
Intel(R) FPGA Programmable Acceleration Card N3000 All versions
Intel(R) FPGA Programmable Acceleration Card N3000 See advisory https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00319.html
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved