CVE-2024-39609

Severity CVSS v4.0:
HIGH
Type:
CWE-284 Improper Access Control
Publication date:
13/11/2024
Last modified:
19/11/2024

Description

Improper Access Control in UEFI firmware for some Intel(R) Server Board M70KLP may allow a privileged user to potentially enable escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:server_board_m70klp2sb_firmware:*:*:*:*:*:*:*:* 01.04.0030 (excluding)
cpe:2.3:h:intel:server_board_m70klp2sb:-:*:*:*:*:*:*:*