NetApp FAS/AFF Bios

CPE Details

NetApp FAS/AFF Bios
-
2021-06-28
11h40 +00:00
2021-07-02
17h05 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:netapp:fas\/aff_bios:-:*:*:*:*:*:*:*

Informations

Vendor

netapp

Product

fas\/aff_bios

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-33117 2022-05-12 14h36 +00:00 Improper access control for some 3rd Generation Intel(R) Xeon(R) Scalable Processors before BIOS version MR7, may allow a local attacker to potentially enable information disclosure via local access.
5.5
Medium
CVE-2021-0156 2022-02-09 21h04 +00:00 Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access.
7.8
High
CVE-2021-0124 2022-02-09 21h04 +00:00 Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
6.6
Medium
CVE-2021-0118 2022-02-09 21h04 +00:00 Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
6.7
Medium
CVE-2021-0125 2022-02-09 21h04 +00:00 Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
6.6
Medium
CVE-2021-0145 2022-02-09 21h04 +00:00 Improper initialization of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
5.5
Medium
CVE-2021-0119 2022-02-09 21h04 +00:00 Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
6.2
Medium
CVE-2021-0116 2022-02-09 21h04 +00:00 Out-of-bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
7.8
High
CVE-2021-0107 2022-02-09 21h04 +00:00 Unchecked return value in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
6.7
Medium
CVE-2021-0115 2022-02-09 21h04 +00:00 Buffer overflow in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
6.7
Medium
CVE-2021-0111 2022-02-09 21h04 +00:00 NULL pointer dereference in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
6.7
Medium
CVE-2021-0117 2022-02-09 21h04 +00:00 Pointer issues in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
7.8
High
CVE-2021-0092 2022-02-09 21h04 +00:00 Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.
4.4
Medium
CVE-2021-0103 2022-02-09 21h04 +00:00 Insufficient control flow management in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
6.7
Medium
CVE-2021-0091 2022-02-09 21h04 +00:00 Improper access control in the firmware for some Intel(R) Processors may allow an unauthenticated user to potentially enable an escalation of privilege via local access.
7.8
High
CVE-2021-0093 2022-02-09 21h04 +00:00 Incorrect default permissions in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.
4.4
Medium
CVE-2021-0099 2022-02-09 21h04 +00:00 Insufficient control flow management in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access.
7.8
High
CVE-2021-33625 2022-02-03 00h55 +00:00 An issue was discovered in Kernel 5.x in Insyde InsydeH2O, affecting HddPassword. Software SMI services that use the Communicate() function of the EFI_SMM_COMMUNICATION_PROTOCOL do not check whether the address of the buffer is valid, which allows use of SMRAM, MMIO, or OS kernel addresses.
7.5
High
CVE-2020-24512 2021-06-09 16h53 +00:00 Observable timing discrepancy in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
3.3
Low
CVE-2020-24511 2021-06-09 16h53 +00:00 Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
6.5
Medium
CVE-2020-8738 2020-11-12 17h04 +00:00 Improper conditions check in Intel BIOS platform sample code for some Intel(R) Processors before may allow a privileged user to potentially enable escalation of privilege via local access.
6.7
Medium
CVE-2020-0590 2020-11-12 16h54 +00:00 Improper input validation in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
7.8
High