CVE-2020-0524

MEDIUM

Intel Ethernet Controller I210 Firmware < 3.30 - Authenticated Denial of Service via Local Access

Title source: llm
STIX 2.1

Description

Improper default permissions in the firmware for the Intel(R) Ethernet I210 Controller series of network adapters before version 3.30 may allow an authenticated user to potentially enable denial of service via local access.

References (1)

Core 1
Core References

Scores

CVSS v3 5.5
EPSS 0.0003
EPSS Percentile 9.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-276
Status published
Products (1)
intel/ethernet_controller_i210_firmware < 3.30
Published Feb 17, 2021
Tracked Since Feb 18, 2026