CVE-2019-14626 describes an improper access control vulnerability within the PCIe function of the Intel FPGA Programmable Acceleration Card N3000, affecting all versions of both the hardware and its firmware. This flaw allows a privileged local user to potentially escalate privileges. With a CVSS score of 6.7 (Medium), the vulnerability requires high privileges and local access, but if exploited, it can lead to high impacts on confidentiality, integrity, and availability. There is currently no evidence of active exploitation, and public exploit code is unavailable, with minimal community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:intel:field_programmable_gate_array_programmable_acceleration_card_n3000_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.