Metrics
No CVSS v4.0
Attack Vector Physical
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
No CVSS v3.0
Access Vector Local
Access Complexity Low
Authentication None
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
This CVE is not in the KEV list.
The EPSS score is 0.00645.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Intel
Subscribe
|
|
|
Siemens
Subscribe
|
Simatic Drive Controller
Subscribe
Simatic Drive Controller Firmware
Subscribe
Simatic Et200sp 1515sp Pc2
Subscribe
Simatic Et200sp 1515sp Pc2 Firmware
Subscribe
Simatic Field Pg M5
Subscribe
Simatic Field Pg M5 Firmware
Subscribe
Simatic Field Pg M6
Subscribe
Simatic Field Pg M6 Firmware
Subscribe
Simatic Ipc127e
Subscribe
Simatic Ipc127e Firmware
Subscribe
Simatic Ipc427e
Subscribe
Simatic Ipc427e Firmware
Subscribe
Simatic Ipc477e
Subscribe
Simatic Ipc477e Firmware
Subscribe
Simatic Ipc477e Pro
Subscribe
Simatic Ipc527g
Subscribe
Simatic Ipc527g Firmware
Subscribe
Simatic Ipc547g
Subscribe
Simatic Ipc547g Firmware
Subscribe
Simatic Ipc627e
Subscribe
Simatic Ipc627e Firmware
Subscribe
Simatic Ipc647e
Subscribe
Simatic Ipc647e Firmware
Subscribe
Simatic Ipc667e
Subscribe
Simatic Ipc667e Firmware
Subscribe
Simatic Ipc847e
Subscribe
Simatic Ipc847e Firmware
Subscribe
Simatic Itp1000
Subscribe
Simatic Itp1000 Firmware
Subscribe
Sinumerik 828d Hw Pu.4
Subscribe
Sinumerik 828d Hw Pu.4 Firmware
Subscribe
Sinumerik 840d Sl Ht 10
Subscribe
Sinumerik 840d Sl Ht 10 Firmware
Subscribe
Sinumerik Mc Mcu 1720
Subscribe
Sinumerik Mc Mcu 1720 Firmware
Subscribe
Sinumerik One
Subscribe
Sinumerik One Firmware
Subscribe
Sinumerik One Ncu 1740
Subscribe
Sinumerik One Ncu 1740 Firmware
Subscribe
Sinumerik One Ppu 1740
Subscribe
Sinumerik One Ppu 1740 Firmware
Subscribe
|
Configuration 1 [-]
|
Configuration 2 [-]
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-29593 | Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25 , Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an unauthenticated user to potentially enable escalation of privilege via physical access. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
No history.
Status: PUBLISHED
Assigner: intel
Published:
Updated: 2024-08-04T10:12:09.559Z
Reserved: 2020-02-06T00:00:00
Link: CVE-2020-8745
No data.
Status : Analyzed
Published: 2020-11-12T18:15:17.300
Modified: 2025-03-28T15:19:45.743
Link: CVE-2020-8745
No data.
OpenCVE Enrichment
No data.
EUVD