VulnerabilityModified
CVE-2021-33076
Improper authentication in firmware for some Intel(R) SSD DC Products may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
MEDIUM 6.8EPSS 0.30%
Does this matter?
Lower severity and a low EPSS score (0.30%). Track it; it rarely justifies an emergency change on its own.
Description
Improper authentication in firmware for some Intel(R) SSD DC Products may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
- CVSS 3.1
- 6.8 MEDIUMCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.30% probability · 22th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-287
- Affected
- intel/ssd 600p firmware · intel/ssd 660p firmware · intel/ssd 665p firmware · intel/ssd 670p firmware · intel/ssd 700p firmware · intel/ssd 760p firmware · intel/ssd d3-s4510 m.2 firmware · intel/ssd dc p4510 sff firmware · intel/ssd d3-s4610 m.2 firmware · intel/ssd dc p4610 sff firmware · intel/ssd d5-p4326 firmware · intel/ssd d5-p5316 firmware · intel/ssd d7 p5510 firmware · intel/ssd d7 p5600 firmware · intel/ssd dc d4512 firmware · intel/ssd dc p3100 firmware · intel/ssd dc p4101 firmware · intel/ssd dc p4500 firmware · intel/ssd dc p4501 firmware · intel/ssd dc p4510 edsff firmware · +10 more
- Source
- secure@intel.com
References
- https://www.solidigm.com/content/dam/newco-aem-site/master/site/support/Solidigm%20SA-000563%20rev1.1.pdfMitigation, Vendor Advisory
- https://www.solidigm.com/content/dam/newco-aem-site/master/site/support/Solidigm%20SA-000563%20rev1.1.pdfMitigation, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.