CVE-2024-41167

Severity CVSS v4.0:
HIGH
Type:
CWE-20 Input Validation
Publication date:
13/11/2024
Last modified:
19/11/2024

Description

Improper input validation in UEFI firmware in some Intel(R) Server Board M10JNP2SB Family may allow a privileged user to potentially enable escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:m10jnp2sb_firmware:*:*:*:*:*:*:*:* 7.220 (including)
cpe:2.3:h:intel:m10jnp2sb:-:*:*:*:*:*:*:*