CVE-2020-8761

medium

Description

Inadequate encryption strength in subsystem for Intel(R) CSME versions before 13.0.40 and 13.30.10 may allow an unauthenticated user to potentially enable information disclosure via physical access.

References

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00391

https://security.netapp.com/advisory/ntap-20201113-0002/

Details

Source: Mitre, NVD

Published: 2020-11-12

Updated: 2020-11-30

Risk Information

CVSS v2

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 4.6

Vector: CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Severity: Medium