Buffer Overflow Vulnerability in Intel Server Boards and Systems
CVE-2020-24474
8HIGH
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 9 June 2021
Summary
A buffer overflow vulnerability exists in the BMC firmware for certain Intel Server Boards, Server Systems, and Compute Modules prior to version 2.48.ce3e3bd2. An authenticated user with adjacent access could exploit this flaw to potentially escalate their privileges, thereby gaining unauthorized access to sensitive system functionalities. It's critical for users to apply the latest firmware updates to safeguard against this vulnerability.
Affected Version(s)
Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2
References
CVSS V3.1
Score:
8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved