Attacker Value
Unknown
(0 users assessed)
Exploitability
Unknown
(0 users assessed)
User Interaction
None
Privileges Required
None
Attack Vector
Physical
0

CVE-2021-33076

Disclosure Date: September 20, 2022
Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

Improper authentication in firmware for some Intel® SSD DC Products may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Add Assessment

No one has assessed this topic. Be the first to add your voice to the community.

CVSS V3 Severity and Metrics
Base Score:
6.8 Medium
Impact Score:
5.9
Exploitability Score:
0.9
Vector:
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector (AV):
Physical
Attack Complexity (AC):
Low
Privileges Required (PR):
None
User Interaction (UI):
None
Scope (S):
Unchanged
Confidentiality (C):
High
Integrity (I):
High
Availability (A):
High

General Information

Vendors

  • intel

Products

  • ssd 600p firmware,
  • ssd 660p firmware,
  • ssd 665p firmware,
  • ssd 670p firmware,
  • ssd 700p firmware,
  • ssd 760p firmware,
  • ssd d3-s4510 m.2 firmware,
  • ssd d3-s4610 m.2 firmware,
  • ssd d5-p4326 firmware,
  • ssd d5-p5316 firmware,
  • ssd d7 p5510 firmware,
  • ssd d7 p5600 firmware -,
  • ssd dc d4512 firmware,
  • ssd dc p3100 firmware,
  • ssd dc p4101 firmware,
  • ssd dc p4500 firmware,
  • ssd dc p4501 firmware,
  • ssd dc p4510 edsff firmware,
  • ssd dc p4510 sff firmware,
  • ssd dc p4511 edsff firmware,
  • ssd dc p4511 m.2 firmware,
  • ssd dc p4600 firmware,
  • ssd dc p4608 firmware,
  • ssd dc p4610 sff firmware,
  • ssd dc s4500 firmware,
  • ssd dc s4600 firmware,
  • ssd e 6000p firmware,
  • ssd e 6100p firmware,
  • ssd pro 6000p firmware,
  • ssd pro 7600p firmware

Additional Info

Technical Analysis