Home/Product/netapp hci compute node bios
Product

netapp hci compute node bios

21 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-47855
all versions
Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potenti
6.0MEDIUM
CVE-2023-45745
all versions
Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potenti
7.9HIGH
CVE-2023-29153
all versions
Uncontrolled resource consumption for some Intel(R) SPS firmware before version SPS_E5_06.01.04.002.0 may allow a privileged user
4.9MEDIUM
CVE-2021-0060
all versions
Insufficient compartmentalization in HECI subsystem for the Intel(R) SPS before versions SPS_E5_04.01.04.516.0, SPS_E5_04.04.04.03
6.6MEDIUM
CVE-2020-8700
all versions
Improper input validation in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalatio
6.7MEDIUM
CVE-2020-8670
all versions
Race condition in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privil
6.4MEDIUM
CVE-2020-24512
all versions
Observable timing discrepancy in some Intel(R) Processors may allow an authenticated user to potentially enable information disclo
3.3LOW
CVE-2020-24511
all versions
Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable informati
6.5MEDIUM
CVE-2020-24486
all versions
Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denia
5.5MEDIUM
CVE-2020-12360
all versions
Out of bounds read in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation o
7.8HIGH
CVE-2020-12359
all versions
Insufficient control flow management in the firmware for some Intel(R) Processors may allow an unauthenticated user to potentially
6.8MEDIUM
CVE-2020-12358
all versions
Out of bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of servi
4.4MEDIUM
CVE-2020-12357
all versions
Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation
6.7MEDIUM
CVE-2020-29569
all versions
An issue was discovered in the Linux kernel through 5.10.1, as used with Xen through 4.14.x. The Linux kernel PV block backend exp
8.8HIGH
CVE-2020-29374
all versions
An issue was discovered in the Linux kernel before 5.7.3, related to mm/gup.c and mm/huge_memory.c. The get_user_pages (aka gup) i
3.6LOW
CVE-2020-8764
all versions
Improper access control in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation
6.7MEDIUM
CVE-2020-8740
all versions
Out of bounds write in Intel BIOS platform sample code for some Intel(R) Processors may allow a privileged user to potentially ena
6.7MEDIUM
CVE-2020-8739
all versions
Use of potentially dangerous function in Intel BIOS platform sample code for some Intel(R) Processors may allow an authenticated u
7.8HIGH
CVE-2020-8738
all versions
Improper conditions check in Intel BIOS platform sample code for some Intel(R) Processors before may allow a privileged user to po
6.7MEDIUM
CVE-2020-8698
all versions
Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable informati
5.5MEDIUM
CVE-2020-25645
all versions
A flaw was found in the Linux kernel in versions before 5.9-rc7. Traffic between two Geneve endpoints may be unencrypted when IPse
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin