CVE-2002-2059

UnknownEPSS 0.45%

Last modified

CVE-2002-2059 is a vulnerability of currently unknown severity. BIOS D845BG, D845HV, D845PT and D845WN on Intel motherboards does not properly restrict access to configuration information when BIOS passwords are enabled, which could allow local users to change the default boot device via the F8 key.. EPSS estimates a 0.45% chance of exploitation in the next 30 days.

Description

BIOS D845BG, D845HV, D845PT and D845WN on Intel motherboards does not properly restrict access to configuration information when BIOS passwords are enabled, which could allow local users to change the default boot device via the F8 key.

Metrics

EPSS Probability
0.45%

35.9th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
IntelD845bg Motherboardp01-0012
IntelD845bg Motherboardp02-0015
IntelD845bg Motherboardp03-0021
IntelD845bg Motherboardp04-0023
IntelD845bg Motherboardp05-0024
IntelD845hv Motherboardp04-0018
IntelD845hv Motherboardp05-0022
IntelD845hv Motherboardp06-0024
IntelD845hv Motherboardp07-0029
IntelD845hv Motherboardp08-0031
IntelD845hv Motherboardp09-0035
IntelD845hv Motherboardp10-0038
IntelD845hv Motherboardp11-0040
IntelD845pt Motherboardp01-0012
IntelD845pt Motherboardp02-0015
IntelD845pt Motherboardp03-0021
IntelD845pt Motherboardp04-0023
IntelD845pt Motherboardp05-0024
IntelD845wn Motherboardp04-0018
IntelD845wn Motherboardp06-0024
IntelD845wn Motherboardp07-0029
IntelD845wn Motherboardp08-0031
IntelD845wn Motherboardp09-0035
IntelD845wn Motherboardp10-0038
IntelD845wn Motherboardp11-0040

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2002-2059?
BIOS D845BG, D845HV, D845PT and D845WN on Intel motherboards does not properly restrict access to configuration information when BIOS passwords are enabled, which could allow local users to change the default boot device via the F8 key.
How severe is CVE-2002-2059?
Severity scoring for CVE-2002-2059 is pending analysis. The EPSS model estimates a 0.45% probability of exploitation in the next 30 days.
How do I fix CVE-2002-2059?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2002-2059?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST