PT-2019-4267 · Intel · Intel Ethernet 700 Series Controllers

Publicado

2019-11-12

·

Atualizado

2021-07-21

·

CVE-2019-0139

CVSS v3.1

6.7

Média

VetorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel Ethernet 700 Series Controllers versions prior to 7.0
Description The issue is related to insufficient access control in the firmware, which may allow a privileged user to potentially enable an escalation of privilege, denial of service, or information disclosure via local access. This is due to insecure privilege management.
Recommendations For versions prior to 7.0, update to version 7.0 or later to resolve the issue. As a temporary workaround, consider restricting local access to the controllers to minimize the risk of exploitation.

Correção

Improper Privilege Management

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2019-04874
CVE-2019-0139

Produtos afetados

Intel Ethernet 700 Series Controllers