Vulnerability Details CVE-2019-0099
Insufficient access control vulnerability in subsystem in Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.6%
CVSS Severity
CVSS v3 Score 6.8
CVSS v2 Score 4.6
Products affected by CVE-2019-0099
-
cpe:2.3:o:intel:server_platform_services_firmware:3.0.6.267.4
-
cpe:2.3:o:intel:server_platform_services_firmware:4.0
-
cpe:2.3:o:intel:server_platform_services_firmware:4.00.04.367
-
cpe:2.3:o:intel:server_platform_services_firmware:4.00.04.382
-
cpe:2.3:o:intel:server_platform_services_firmware:4.00.04.383
-
cpe:2.3:o:intel:server_platform_services_firmware:4.01.00.152.0
-
cpe:2.3:o:intel:server_platform_services_firmware:4.01.02.173
-
cpe:2.3:o:intel:server_platform_services_firmware:4.01.02.174
-
cpe:2.3:o:intel:server_platform_services_firmware:5.00.04.012
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_04.01.00.000.0
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_04.01.04.085.0
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_04.01.04.086.0
-
cpe:2.3:o:intel:server_platform_services_firmware:sps_e3_04.01.04.700.0