CVE Feed

    Dashboard / CVE / CVE-2020-12374

    CVE-2020-12374

    Buffer overflow in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow a privileged user to potentially enable escalation of privilege via local access.

    Published:Feb 19, 2021
    Last Modified:Nov 21, 2024
    EPS:Feb 19, 2021
    EPSS Score:0.0008
    CVSS Score:6.7

    Affected Products

    Vendor
    Intel
    Product
    Bmc Firmware
    Vendor
    Intel
    Product
    Hns2600bpb
    Vendor
    Intel
    Product
    Hns2600bpb24
    Vendor
    Intel
    Product
    Hns2600bpb24r
    Vendor
    Intel
    Product
    Hns2600bpblc
    Vendor
    Intel
    Product
    Hns2600bpblc24
    Vendor
    Intel
    Product
    Hns2600bpblc24r
    Vendor
    Intel
    Product
    Hns2600bpbr
    Vendor
    Intel
    Product
    Hns2600bpq
    Vendor
    Intel
    Product
    Hns2600bpq24
    Vendor
    Intel
    Product
    Hns2600bpq24r
    Vendor
    Intel
    Product
    Hns2600bpqr
    Vendor
    Intel
    Product
    Hns2600bps
    Vendor
    Intel
    Product
    Hns2600bps24
    Vendor
    Intel
    Product
    Hns2600bps24r
    Vendor
    Intel
    Product
    Hns2600bpsr
    Vendor
    Intel
    Product
    R1000wf
    Vendor
    Intel
    Product
    R1208wfqysr
    Vendor
    Intel
    Product
    R1208wftys
    Vendor
    Intel
    Product
    R1208wftysr
    Vendor
    Intel
    Product
    R1304wf0ys
    Vendor
    Intel
    Product
    R1304wf0ysr
    Vendor
    Intel
    Product
    R1304wftys
    Vendor
    Intel
    Product
    R1304wftysr
    Vendor
    Intel
    Product
    R2208wf0zs
    Vendor
    Intel
    Product
    R2208wf0zsr
    Vendor
    Intel
    Product
    R2208wfqzs
    Vendor
    Intel
    Product
    R2208wfqzsr
    Vendor
    Intel
    Product
    R2208wftzs
    Vendor
    Intel
    Product
    R2208wftzsr
    Vendor
    Intel
    Product
    R2224wfqzs
    Vendor
    Intel
    Product
    R2224wftzs
    Vendor
    Intel
    Product
    R2224wftzsr
    Vendor
    Intel
    Product
    R2308wftzs
    Vendor
    Intel
    Product
    R2308wftzsr
    Vendor
    Intel
    Product
    R2312wf0np
    Vendor
    Intel
    Product
    R2312wf0npr
    Vendor
    Intel
    Product
    R2312wfqzs
    Vendor
    Intel
    Product
    R2312wftzs
    Vendor
    Intel
    Product
    R2312wftzsr
    Vendor
    Intel
    Product
    S2600bpbr
    Vendor
    Intel
    Product
    S2600bpqr
    Vendor
    Intel
    Product
    S2600bpsr
    Vendor
    Intel
    Product
    S2600stb
    Vendor
    Intel
    Product
    S2600stq
    Vendor
    Intel
    Product
    S2600wf0
    Vendor
    Intel
    Product
    S2600wfq
    Vendor
    Intel
    Product
    S2600wft

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High