PT-2026-24490 · Intel · Intel Uefi Reference Platforms

Published

2026-03-10

·

Updated

2026-03-10

·

CVE-2025-20096

CVSS v4.0

5.9

Medium

VectorAV:L/AC:H/AT:P/PR:H/UI:A/VC:N/VI:H/VA:H/SC:N/SI:H/SA:H
Name of the Vulnerable Software and Affected Versions Intel Reference Platforms (affected versions not specified)
Description An improper input validation issue exists in the UEFI firmware for some Intel Reference Platforms, potentially allowing for escalation of privilege. A system software adversary with a privileged user account, combined with a high complexity attack, may be able to manipulate data. This requires local access, active user interaction, and does not require special internal knowledge. The issue may impact the integrity and availability of the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-20096

Affected Products

Intel Uefi Reference Platforms