Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-25776


Improper input validation in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable information disclosure via local access.


Published

2023-05-10T14:15:32.490

Last Modified

2024-11-21T07:50:10.980

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-20
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System intel server_system_d50tnp1mhcrlc_firmware < 2.90 Yes
Hardware intel server_system_d50tnp1mhcrlc - No
Operating System intel server_system_d50tnp1mhcpac_firmware < 2.90 Yes
Hardware intel server_system_d50tnp1mhcpac - No
Operating System intel server_system_d50tnp2mhsvac_firmware < 2.90 Yes
Hardware intel server_system_d50tnp2mhsvac - No
Operating System intel server_system_d50tnp2mhstac_firmware < 2.90 Yes
Hardware intel server_system_d50tnp2mhstac - No
Operating System intel server_system_d50tnp1mhcrac_firmware < 2.90 Yes
Hardware intel server_system_d50tnp1mhcrac - No
Operating System intel server_system_d50tnp2mfalac_firmware < 2.90 Yes
Hardware intel server_system_d50tnp2mfalac - No
Operating System intel server_system_m50cyp1ur204_firmware < 2.90 Yes
Hardware intel server_system_m50cyp1ur204 - No
Operating System intel server_system_m50cyp1ur212_firmware < 2.90 Yes
Hardware intel server_system_m50cyp1ur212 - No
Operating System intel server_system_m50cyp2ur312_firmware < 2.90 Yes
Hardware intel server_system_m50cyp2ur312 - No
Operating System intel server_system_m50cyp2ur208_firmware < 2.90 Yes
Hardware intel server_system_m50cyp2ur208 - No

References