Логотип exploitDog
bind:CVE-2024-23591
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-23591

Количество 3

Количество 3

nvd логотип

CVE-2024-23591

почти 2 года назад

ThinkSystem SR670V2 servers manufactured from approximately June 2021 to July 2023 were left in Manufacturing Mode which could allow an attacker with privileged logical access to the host or physical access to server internals to modify or disable Intel Boot Guard firmware integrity, SPS security, and other SPS configuration setting. The server’s NIST SP 800-193-compliant Platform Firmware Resiliency (PFR) security subsystem significantly mitigates this issue.

CVSS3: 2
EPSS: Низкий
github логотип

GHSA-xgm2-cpgm-525v

почти 2 года назад

ThinkSystem SR670V2 servers manufactured from approximately June 2021 to July 2023 were left in Manufacturing Mode which could allow an attacker with privileged logical access to the host or physical access to server internals to modify or disable Intel Boot Guard firmware integrity, SPS security, and other SPS configuration setting.

CVSS3: 2
EPSS: Низкий
fstec логотип

BDU:2024-01562

почти 2 года назад

Уязвимость подсистемы Intel Server Platform Services (SPS) Manageability Engine (ME) микропрограммного обеспечения стоечных серверов Lenovo ThinkSystem, позволяющая нарушителю изменить конфигурацию прошивки и вызвать отказ в обслуживании

CVSS3: 2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-23591

ThinkSystem SR670V2 servers manufactured from approximately June 2021 to July 2023 were left in Manufacturing Mode which could allow an attacker with privileged logical access to the host or physical access to server internals to modify or disable Intel Boot Guard firmware integrity, SPS security, and other SPS configuration setting. The server’s NIST SP 800-193-compliant Platform Firmware Resiliency (PFR) security subsystem significantly mitigates this issue.

CVSS3: 2
0%
Низкий
почти 2 года назад
github логотип
GHSA-xgm2-cpgm-525v

ThinkSystem SR670V2 servers manufactured from approximately June 2021 to July 2023 were left in Manufacturing Mode which could allow an attacker with privileged logical access to the host or physical access to server internals to modify or disable Intel Boot Guard firmware integrity, SPS security, and other SPS configuration setting.

CVSS3: 2
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-01562

Уязвимость подсистемы Intel Server Platform Services (SPS) Manageability Engine (ME) микропрограммного обеспечения стоечных серверов Lenovo ThinkSystem, позволяющая нарушителю изменить конфигурацию прошивки и вызвать отказ в обслуживании

CVSS3: 2
0%
Низкий
почти 2 года назад

Уязвимостей на страницу