Hacktivists Target U.S. Firms and Military After Iran Strikes
June 25, 2025Multiple D-Link Products Vulnerabilities
June 25, 2025Hacktivists Target U.S. Firms and Military After Iran Strikes
June 25, 2025Multiple D-Link Products Vulnerabilities
June 25, 2025Severity
Medium
Analysis Summary
CVE-2025-20009 CVSS:4.1
Improper input validation in the UEFI firmware GenerationSetup module for the Intel(R) Server D50DNP and M50FCP boards may allow a privileged user to potentially enable information disclosure via local access.
CVE-2025-20095 CVSS:5.4
Incorrect Default Permissions for some Intel(R) RealSense™ SDK software before version 2.56.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Impact
- Information Disclosure
- Privilege Escalation
Indicators of Compromise
CVE
CVE-2025-20009
CVE-2025-20095
Affected Vendors
Affected Products
- Intel(R) Server D50DNP and M50FCPIntel(R) RealSense™ SDK software before version 2.56.2
Remediation
Upgrade to the latest version of Intel, available from the Intel Website.