CVE-2023-30768

MEDIUMCVSS 6.7/10EPSS 0.17%

Last modified

CVE-2023-30768 is a medium-severity vulnerability rated 6.7/10 on the CVSS scale. Improper access control in the Intel(R) Server Board S2600WTT belonging to the Intel(R) Server Board S2600WT Family with the BIOS version 0016 may allow a privileged user to potentially enable escalation of privilege via local access.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.

Description

Improper access control in the Intel(R) Server Board S2600WTT belonging to the Intel(R) Server Board S2600WT Family with the BIOS version 0016 may allow a privileged user to potentially enable escalation of privilege via local access.

Metrics

CVSS 3.1
6.7/10

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
0.17%

7.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
IntelServer Board S1200v3rpl Firmware< 0006
IntelServer Board S1200v3rpm Firmware< 0006
IntelServer Board S1200v3rpo Firmware< 0006
IntelServer Board S1200v3rps Firmware< 0006
IntelServer Board S1400fp2 Firmware< 0005
IntelServer Board S1400fp4 Firmware< 0005
IntelServer Board S1400sp4 Firmware< 0005
IntelServer Board S1400sp2 Firmware< 0005
IntelServer Board S1600jp2 Firmware< 0005
IntelServer Board S1600jp4 Firmware< 0005
IntelServer Board S2400bb4 Firmware< 0005
IntelServer Board S2400ep2 Firmware< 0005
IntelServer Board S2400ep4 Firmware< 0005
IntelServer Board S2400sc2 Firmware< 0005
IntelServer Board S2600co4 Firmware< 0005
IntelServer Board S2600coe Firmware< 0005
IntelServer Board S2600coeioc Firmware< 0005
IntelServer Board S2600cp2 Firmware< 0005
IntelServer Board S2600cp2ioc Firmware< 0005
IntelServer Board S2600cp2j Firmware< 0005
IntelServer Board S2600cp4 Firmware< 0005
IntelServer Board S2600cp4ioc Firmware< 0005
IntelServer Board S2600gl Firmware< 0005
IntelServer Board S2600gz Firmware< 0005
IntelServer Board S2600ip4 Firmware< 0005
IntelServer Board S2600ip4l Firmware< 0005
IntelWorkstation Board W2600cr2 Firmware< 0005
IntelWorkstation Board W2600cr2l Firmware< 0005
IntelServer Board S2600jf Firmware< 0005
IntelServer Board S2600wp Firmware< 0005
IntelServer Board S4600lh2 Firmware< 0005
IntelServer Board S4600lt2 Firmware< 0005
IntelServer Board S2600wpf Firmware< 0005
IntelServer Board S2600wpq Firmware< 0005
IntelServer Board S2600jff Firmware< 0005
IntelServer Board S2600jfq Firmware< 0005
IntelServer Board S2600cw2r Firmware< 0018
IntelServer Board S2600cw2sr Firmware< 0018
IntelServer Board S2600cwtr Firmware< 0018
IntelServer Board S2600cwtsr Firmware< 0018
IntelServer Board S2600cw2s Firmware< 0018
IntelServer Board S2600cwt Firmware< 0018
IntelServer Board S2600cwts Firmware< 0018
IntelServer Board S2600cw2 Firmware< 0018
IntelServer Board S2600kpfr Firmware< 0018
IntelServer Board S2600kpr Firmware< 0018
IntelServer Board S2600kptr Firmware< 0018
IntelServer Board S2600kp Firmware< 0018
IntelServer Board S2600kpf Firmware< 0018
IntelServer Board S2600tpnr Firmware< 0018

Showing 50 of 64 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2023-30768?
Improper access control in the Intel(R) Server Board S2600WTT belonging to the Intel(R) Server Board S2600WT Family with the BIOS version 0016 may allow a privileged user to potentially enable escalation of privilege via local access.
How severe is CVE-2023-30768?
CVE-2023-30768 has a CVSS score of 6.7/10 (MEDIUM severity). The EPSS model estimates a 0.17% probability of exploitation in the next 30 days.
How do I fix CVE-2023-30768?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2023-30768?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST