CYBER CODE RED

Get real-time updates on Telegram

P4Verified

CVE-2020-8670: bios Version not applicable in the source CPE; +18 more affected products

CVE-2020-8670. CVSS 3.1 base score 6.4 (MEDIUM, NVD). EPSS 0.00268 (percentile 0.1733), scored 2026-10-08.

Affected technology

bios · Version not applicable in the source CPE
intel

simatic field pg m6 firmware · Exact affected versions not specified by the source
siemens

simatic ipc427e firmware · Exact affected versions not specified by the source
siemens

simatic ipc477e firmware · Exact affected versions not specified by the source
siemens

simatic ipc477e pro firmware · Exact affected versions not specified by the source
siemens

simatic ipc527g firmware · Exact affected versions not specified by the source
siemens

simatic ipc547g firmware · Exact affected versions not specified by the source
siemens

simatic ipc627e firmware · before 25.02.10 (exclusive)
siemens

simatic ipc647e firmware · before 25.02.10 (exclusive)
siemens

simatic ipc677e firmware · before 25.02.10 (exclusive)
siemens

simatic ipc847e firmware · before 25.02.10 (exclusive)
siemens

simatic itp1000 firmware · Exact affected versions not specified by the source
siemens

cloud backup · Version not applicable in the source CPE
netapp

aff bios · Version not applicable in the source CPE
netapp

fas bios · Version not applicable in the source CPE
netapp

hci compute node bios · Version not applicable in the source CPE
netapp

hci storage node bios · Version not applicable in the source CPE
netapp

solidfire bios · Version not applicable in the source CPE
netapp

Intel(R) Processors · See references
Vendor not specified by the source

Component: Not specified by the source

Attack conditions (NVD, CVSS 3.1): Local · High privileges required · No user interaction required

What an attacker can do

A privileged user may potentially enable escalation of privilege via local access. NVD’s CVSS 3.1 assessment (base score 6.4/10) rates confidentiality, integrity and availability impact as high.

Published

CWE
CWE-362
CCR priority
25.7 /100 (P4)
CVSS 3.1
6.4 /10 · CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H · NVD
EPSS
0.00268 · percentile 0.1733 · 2026-10-08
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2020-8670.html