CVE-2025-24308 - CERT CVE
ID CVE-2025-24308
Sažetak Improper input validation in the UEFI firmware error handler for the Intel(R) Server D50DNP and M50FCP may allow a privileged user to potentially enable escalation of privilege via local access.
Reference
CVSS
Base: 7.5
Impact: 6.0
Exploitability:0.8
Pristup
VektorSloženostAutentikacija
LOCAL HIGH HIGH
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Zadnje važnije ažuriranje 13-05-2025 - 21:16
Objavljeno 13-05-2025 - 21:16