CVE-2019-0120

MEDIUM

Intel J5005 Firmware - Insufficiently Protected Credentials

Title source: rule

Description

Insufficient key protection vulnerability in silicon reference firmware for Intel(R) Pentium(R) Processor J Series, Intel(R) Pentium(R) Processor N Series, Intel(R) Celeron(R) J Series, Intel(R) Celeron(R) N Series, Intel(R) Atom(R) Processor A Series, Intel(R) Atom(R) Processor E3900 Series, Intel(R) Pentium(R) Processor Silver Series may allow a privileged user to potentially enable denial of service via local access.

Scores

CVSS v3 4.4
EPSS 0.0005
EPSS Percentile 14.0%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-522
Status published

Affected Products (28)

intel/j5005_firmware
intel/j4205_firmware
intel/j3710_firmware
intel/n3540_firmware
intel/n3530_firmware
intel/n5000_firmware
intel/celeron_j4005_firmware
intel/celeron_n4100_firmware
intel/celeron_n4000_firmware
intel/celeron_j4105_firmware
intel/celeron_j3355_firmware
intel/celeron_n3350_firmware
intel/celeron_j3455_firmware
intel/celeron_n3450_firmware
intel/celeron_j3060_firmware
... and 13 more

Timeline

Published May 17, 2019
Tracked Since Feb 18, 2026