Rewterz
Rewterz Threat Alert – Black Basta Ransomware – Active IOCs
November 11, 2022
Rewterz
Rewterz Threat Advisory – Multiple Intel SPS Vulnerabilities
November 11, 2022

Rewterz Threat Advisory – Multiple Intel Server Board Vulnerabilities

Severity

Medium

Analysis Summary

CVE-2022-30542 CVSS:8.2
Intel Server Board S2600WF, Intel(R) Server System R1000WF and Intel(R) Server System R2000WF families could allow a local authenticated attacker to gain elevated privileges on the system, caused by improper input validation in the firmware. An attacker could exploit this vulnerability to gain elevated privileges on the system.

CVE-2022-25917 CVSS:6
Intel Server Board is vulnerable to a denial of service, caused by an uncaught exception in the firmware. A local attacker could exploit this vulnerability to cause a denial of service

CVE-2021-0185 CVSS:7.5
Intel Server Board M10JNP Family could allow a local authenticated attacker to gain elevated privileges on the system, caused by improper input validation. An attacker could exploit this vulnerability to gain elevated privileges on the system.

Impact

  • Privilege Escalation
  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2022-30542
  • CVE-2022-25917
  • CVE-2021-0185

Affected Vendors

Intel

Affected Products

  • Intel Server Board Families S2600WF
  • Intel Server Board R1000WF
  • Intel Server Board M50CYP Family R01.01.0000
  • Intel Server Board M10JNP Family 7.200

Remediation

Refer to INTEL Security Advisory for patch, upgrade or suggested workaround information. 
INTEL Security Advisory