Improper Input Validation in Intel Server Board BMC Firmware
CVE-2023-22379

6.7MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
10 May 2023

Summary

The vulnerability involves improper input validation in Intel Server Board BMC firmware prior to version 2.90. This flaw may allow privileged users to disclose sensitive information through local access, potentially compromising data integrity and user privacy. It is crucial for organizations using affected firmware versions to assess their systems and apply necessary patches to mitigate potential security risks.

Affected Version(s)

Intel(R) Server Board BMC firmware before version 2.90

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.