CVE-2020-8711

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/08/2020
Last modified:
19/08/2020

Description

Improper access control in the bootloader for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.45 may allow a privileged user to potentially enable escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:server_board_s2600wt_firmware:*:*:*:*:*:*:*:* 2.45 (excluding)
cpe:2.3:h:intel:server_board_s2600wt2:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_board_s2600wt2r:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_board_s2600wtt:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_board_s2600wttr:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:server_system_r1000wt_firmware:*:*:*:*:*:*:*:* 2.45 (excluding)
cpe:2.3:h:intel:server_system_r1208wt2gs:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_system_r1208wt2gsr:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_system_r1208wttgs:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_system_r1208wttgsbpp:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_system_r1208wttgsr:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_system_r1304wt2gs:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_system_r1304wt2gsr:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_system_r1304wttgs:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:server_system_r1304wttgsr:-:*:*:*:*:*:*:*