First published: Fri May 17 2019(Updated: )
Insufficient access control vulnerability in subsystem in Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Server Platform Services Firmware | <sps_e3_05.00.04.027.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0099 is an insufficient access control vulnerability in the subsystem in Intel(R) SPS before version SPS_E3_05.00.04.027.0.
An unauthenticated user can potentially enable escalation of privilege via physical access.
CVE-2019-0099 has a severity rating of medium with a CVSS score of 6.8.
CVE-2019-0099 affects Intel Server Platform Services Firmware versions up to exclusive SPS_E3_05.00.04.027.0.
You can find more information about CVE-2019-0099 at the following references: [https://support.f5.com/csp/article/K30105730](https://support.f5.com/csp/article/K30105730), [https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00213.html](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00213.html).