VulnerabilityModified
CVE-2022-21216
Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access.
MEDIUM 6.8EPSS 0.54%
Does this matter?
Lower severity and a low EPSS score (0.54%). Track it; it rarely justifies an emergency change on its own.
Description
Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Processors may allow a privileged user to potentially enable escalation of privilege via adjacent network access.
- CVSS 3.1
- 6.8 MEDIUMCVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.54% probability · 44th percentile
- CISA KEV
- Not listed
- Affected
- intel/xeon gold 5315y firmware · intel/xeon gold 5317 firmware · intel/xeon gold 5318n firmware · intel/xeon gold 5318s firmware · intel/xeon gold 5318y firmware · intel/xeon gold 5320 firmware · intel/xeon gold 5320t firmware · intel/xeon gold 6312u firmware · intel/xeon gold 6314u firmware · intel/xeon gold 6326 firmware · intel/xeon gold 6330 firmware · intel/xeon gold 6330n firmware · intel/xeon gold 6334 firmware · intel/xeon gold 6336y firmware · intel/xeon gold 6338 firmware · intel/xeon gold 6338n firmware · intel/xeon gold 6338t firmware · intel/xeon gold 6342 firmware · intel/xeon gold 6346 firmware · intel/xeon gold 6348 firmware · +40 more
- Source
- secure@intel.com
References
- http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00700.htmlVendor Advisory
- https://security.netapp.com/advisory/ntap-20230601-0005/
- http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00700.htmlVendor Advisory
- https://security.netapp.com/advisory/ntap-20230601-0005/
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.