CVE-2020-24516

3 documents3 sources
Severity
6.8MEDIUM
EPSS
0.1%
top 77.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 9
Latest updateMay 24

Description

Modification of assumed-immutable data in subsystem in Intel(R) CSME versions before 13.0.47, 13.30.17, 14.1.53, 14.5.32, 15.0.22 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 0.9 | Impact: 5.9

Affected Packages2 packages

CVEListV5intel(r)_csme_versionsversions before 13.0.47, 13.30.17, 14.1.53, 14.5.32, 15.0.22

🔴Vulnerability Details

2
GHSA
GHSA-g8cj-67cm-c5wm: Modification of assumed-immutable data in subsystem in Intel(R) CSME versions before 132022-05-24
CVEList
CVE-2020-24516: Modification of assumed-immutable data in subsystem in Intel(R) CSME versions before 132021-06-09