← Back

CVE-2020-8755

nvd nist
Published: Nov 12, 2020Modified: Nov 21, 2024

JSON object

Loading...
6.4
Vector
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.5 / Impact: 5.9
Source: NVD

Description

Race condition in subsystem for Intel(R) CSME versions before 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Affected (4)

2 products
Server Platform Services
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Intel
Before 12.0.70
From 14.0.0 to 14.0.45
Before e5_04.01.04.400
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Before e3_05.01.04.200

References (6)

Source: secure@intel.com
Third Party Advisory
Source: secure@intel.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.