Improper Input Validation in Intel Server Board Firmware
CVE-2020-12299

8.2HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
13 August 2020

Summary

A vulnerability exists in the BIOS firmware for Intel Server Board Families S2600ST, S2600BP, and S2600WF due to improper input validation. This flaw can be exploited by a privileged user with local access, potentially allowing them to escalate their privileges. This highlights the importance of maintaining firmware integrity and applying necessary patches to mitigate security risks. For further details, visit Intel's advisory and security recommendations.

Affected Version(s)

Intel(R) Server Board Families Advisory See provided reference

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.