CVE-2021-0070: Input Validation
Published Jun 9, 2021
·Updated
Improper input validation in the BMC firmware for Intel(R) Server Board M10JNP2SB before version EFI BIOS 7215, BMC 8100.01.08 may allow an unauthenticated user to potentially enable an escalation of privilege via adjacent access.
Affected Software
2 affected components
Intel EFI BIOS 7215<bmc_8100.01.08
Intel Server Board M10JNP2SB
Event History
Jun 9, 2021
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-0070?
CVE-2021-0070 is a vulnerability in the BMC firmware for Intel Server Board M10JNP2SB before version EFI BIOS 7215, BMC 8100.01.08.
2
What is the severity of CVE-2021-0070?
CVE-2021-0070 has a severity rating of 8.8 (high).
3
How can an unauthenticated user exploit CVE-2021-0070?
An unauthenticated user may potentially enable an escalation of privilege via adjacent access.
4
Is Intel Server Board M10JNP2SB affected by CVE-2021-0070?
No, Intel Server Board M10JNP2SB is not vulnerable to CVE-2021-0070.
5
How do I fix CVE-2021-0070?
To fix CVE-2021-0070, update the BMC firmware to version EFI BIOS 7215, BMC 8100.01.08 or later.