Vulnerabilities
Vulnerable Software
Netapp:  >> Fas/aff Bios  Security Vulnerabilities
Improper access control in the firmware for some Intel(R) Processors may allow an unauthenticated user to potentially enable an escalation of privilege via local access.
CVSS Score
7.8
EPSS Score
0.002
Published
2022-02-09
Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.
CVSS Score
4.4
EPSS Score
0.001
Published
2022-02-09
Incorrect default permissions in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.
CVSS Score
4.4
EPSS Score
0.0
Published
2022-02-09
Insufficient control flow management in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access.
CVSS Score
7.8
EPSS Score
0.002
Published
2022-02-09
Insufficient control flow management in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
CVSS Score
6.7
EPSS Score
0.001
Published
2022-02-09
Unchecked return value in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
CVSS Score
6.7
EPSS Score
0.001
Published
2022-02-09
NULL pointer dereference in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
CVSS Score
6.7
EPSS Score
0.001
Published
2022-02-09
An issue was discovered in Kernel 5.x in Insyde InsydeH2O, affecting HddPassword. Software SMI services that use the Communicate() function of the EFI_SMM_COMMUNICATION_PROTOCOL do not check whether the address of the buffer is valid, which allows use of SMRAM, MMIO, or OS kernel addresses.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-02-03
Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
CVSS Score
6.5
EPSS Score
0.001
Published
2021-06-09
Observable timing discrepancy in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
CVSS Score
3.3
EPSS Score
0.001
Published
2021-06-09


Contact Us

Shodan ® - All rights reserved