Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, Intel(R) TXE versions before 3.1.80 may allow an unauthenticated user to potentially enable information disclosure via physical access.
https://security.netapp.com/advisory/ntap-20201113-0005/
https://security.netapp.com/advisory/ntap-20201113-0002/
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00391
Source: Mitre, NVD
Published: 2020-11-12
Updated: 2021-07-21
Base Score: 2.1
Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N
Severity: Low
Base Score: 4.6
Vector: CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Severity: Medium
EPSS: 0.00169