Vulnerability Details CVE-2019-11140
Insufficient session validation in system firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.7%
CVSS Severity
CVSS v3 Score 6.7
CVSS v2 Score 4.6
Products affected by CVE-2019-11140
-
cpe:2.3:h:intel:compute_card_cd1iv128mk:-
-
cpe:2.3:h:intel:compute_stick_stk2mv64cc:-
-
cpe:2.3:h:intel:nuc_kit_nuc7i3dnx:-
-
cpe:2.3:h:intel:nuc_kit_nuc7i5dnx:-
-
cpe:2.3:h:intel:nuc_kit_nuc7i7dnx:-
-
cpe:2.3:o:intel:compute_card_firmware:-
-
cpe:2.3:o:intel:compute_stick_firmware:-
-
cpe:2.3:o:intel:nuc_kit_firmware:-