PT-2016-3453 · Intel · Intel Server Board S2600Bp+7

Published

2016-08-08

·

Updated

2023-05-24

·

CVE-2023-30768

CVSS v3.1

7.7

High

VectorAV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) Server Board S2600WTT version 0016 Intel(R) Server Board S1200RP (affected versions not specified) Intel(R) Server Board S1400FP (affected versions not specified) Intel(R) Server Board S1400SP (affected versions not specified) Intel(R) Server Board S1600JP (affected versions not specified) Intel(R) Server Board S2400BB (affected versions not specified) Intel(R) Server Board S2400EP (affected versions not specified) Intel(R) Server Board S2400SC (affected versions not specified) Intel(R) Server Board S2600CO (affected versions not specified) Intel(R) Server Board S2600CP (affected versions not specified) Intel(R) Server Board S2600GL (affected versions not specified) Intel(R) Server Board S2600GZ (affected versions not specified) Intel(R) Server Board S2600IP (affected versions not specified) Intel(R) Server Board W2600CR (affected versions not specified) Intel(R) Server Board S2600JF (affected versions not specified) Intel(R) Server Board S2600WP (affected versions not specified) Intel(R) Server Board S4600LH (affected versions not specified) Intel(R) Server Board S4600LT (affected versions not specified) Intel(R) Server Board S2600CW (affected versions not specified) Intel(R) Server Board S2600KP (affected versions not specified) Intel(R) Server Board S2600TP (affected versions not specified) Intel(R) Server Board S2600WT (affected versions not specified) Intel(R) Server Board S1200BT (affected versions not specified)
Description The issue is related to improper access control in the BIOS of certain Intel Server Boards, which may allow a privileged user to potentially enable escalation of privilege via local access. This is due to deficiencies in access control.
Recommendations For Intel(R) Server Board S2600WTT version 0016: Update the BIOS to a version that addresses the improper access control issue. For other affected Intel Server Boards: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

BDU:2024-02735
CVE-2023-30768

Affected Products

Intel Server Board S1200Bt
Intel Server Board S1400Fp
Intel Server Board S1600Jp
Intel Server Board S2400Bb
Intel Server Board S2600Bp
Intel Server Board S2600Wf
Intel Server Board S4600Lh
Intel Server Board W2600Cr