CVE-2024-23487

Improper input validation in UserAuthenticationSmm driver in UEFI firmware for some Intel(R) Server D50DNP Family products may allow a privileged user to enable escalation of privilege via local access.
Configurations

No configuration.

History

21 Nov 2024, 08:57

Type Values Removed Values Added
Summary
  • (es) La validación de entrada incorrecta en el controlador UserAuthenticationSmm en el firmware UEFI para algunos productos de la familia Intel(R) Server D50DNP puede permitir que un usuario privilegiado habilite la escalada de privilegios a través del acceso local.
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html -

16 May 2024, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-16 21:16

Updated : 2024-11-21 08:57


NVD link : CVE-2024-23487

Mitre link : CVE-2024-23487

CVE.ORG link : CVE-2024-23487


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation