CVE-2020-0530

Severity
7.8HIGH
EPSS
0.1%
top 81.99%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 12
Latest updateMay 24

Description

Improper buffer restrictions in firmware for Intel(R) NUC may allow an authenticated user to potentially enable escalation of privilege via local access. The list of affected products is provided in intel-sa-00343: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00343.html

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages71 packages

CVEListV5intel/intel(r)_nuc_firmwareSee advisory https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00343.html
NVDintel/nuc_kit_nuc5cpyh_firmwarepybswcel.86a.0078
NVDintel/nuc_kit_nuc5pgyh_firmwarepybswcel.86a.0078
NVDintel/nuc_kit_nuc5ppyh_firmwarepybswcel.86a.0078
NVDintel/nuc_kit_nuc6cayh_firmwareayaplcel.86a.0066

🔴Vulnerability Details

2
GHSA
GHSA-33v7-2ghp-xqch: Improper buffer restrictions in firmware for Intel(R) NUC may allow an authenticated user to potentially enable escalation of privilege via local acce2022-05-24
CVEList
CVE-2020-0530: Improper buffer restrictions in firmware for Intel(R) NUC may allow an authenticated user to potentially enable escalation of privilege via local acce2020-03-12