Improper Input Validation in BMC Firmware for Intel Server Board
CVE-2021-0070
8.8HIGH
Summary
A vulnerability exists in the BMC firmware for Intel Server Board M10JNP2SB prior to EFI BIOS version 7215 and BMC version 8100.01.08. This issue arises from improper input validation that may expose an unauthenticated user to an adjacent access attack, potentially allowing for an escalation of privilege.
Affected Version(s)
Intel(R) Server Board M10JNP2SB before version EFI BIOS 7215, BMC 8100.01.08
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved