← Back to CVE List
Vulnerability Intelligence Report

CVE-2020-5955

An issue was discovered in Int15MicrocodeSmm in Insyde InsydeH2O before 2021-10-14 on Intel client chipsets. A caller may be able to escalate privileges.

No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:1.37%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
insyde insydeh2o_uefi_bios all
intel ice_lake all
intel tiger_lake all
intel whitley-sp all
intel grantley-ep all
intel elkhart_lake all
intel purley-ep_refresh_neon_city all
intel comet_lake_rvp all
intel comet_lake all
intel whiskey_lake_rvp all
intel whiskey_lake all
intel mehlow all
intel mehlow-r all
intel coffee_lake all
intel cannon_lake all
intel kaby_lake_mrd all
intel greenlow all
intel greenlow-r all
intel kaby_lake all
intel skylake_mrd all
intel skylake all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
1.368%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2020-01-06T00:00:00
Published2021-11-03T00:19:13
Last Updated2024-08-04T08:47:40

LINK COPIED TO CLIPBOARD