CVE-2020-8723

MEDIUM

Intel Server Board S2600WT Firmware < 1.59 - Unauthenticated Cross-Site Scripting

Title source: llm
STIX 2.1

Description

Cross-site scripting for some Intel(R) Server Boards, Server Systems and Compute Modules before version 1.59 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

References (2)

Core 2

Scores

CVSS v3 6.3
EPSS 0.0028
EPSS Percentile 51.4%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L

Details

CWE
CWE-79
Status published
Products (18)
intel/compute_module_hns2600bp_firmware < 1.59
intel/compute_module_hns2600kp_firmware < 1.59
intel/compute_module_hns2600tp_firmware < 1.59
intel/compute_module_s2600tp_firmware < 1.59
intel/server_board_s1200sp_firmware < 1.59
intel/server_board_s2600bp_firmware < 1.59
intel/server_board_s2600cw < 1.59
intel/server_board_s2600kp_firmware < 1.59
intel/server_board_s2600st_firmware < 1.59
intel/server_board_s2600wf_firmware < 1.59
... and 8 more
Published Aug 13, 2020
Tracked Since Feb 18, 2026