C621a
Vendor:
First CVE: Jun 9, 2021 · Active for 5 years
10
Total CVEs
More Total CVEs than 88% of tracked products
3.3
Avg CVEs / Year
Higher CVE frequency than 82% of tracked products
6.2
Avg CVSS
Higher Avg CVSS than 25% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact C621a over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 9, 2021
5 years ago
Most Recent CVE
Aug 11, 2023
1,078 days ago
CVE Severity & Scoring
C621a10 CVEs
80%
20%
All CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local3 (30.0%)
Network3 (30.0%)
Unknown0 (0.0%)
Physical4 (40.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low10 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None9 (90.0%)
Unknown0 (0.0%)
Required1 (10.0%)
Privileges Required
Low3 (30.0%)
High3 (30.0%)
None4 (40.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-35729HIGH Out of bounds read in firmware for OpenBMC in some Intel(R) platforms before version 0.72 may allow unauthenticated user to potentially enable denial of service via network access. | Feb 16, 2023 | 7.5 | 23 | NO | NO |
CVE-2021-33150MEDIUM Hardware allows activation of test or debug logic at runtime for some Intel(R) Trace Hub instances which may allow an unauthenticated user to potentially enable escalation of privi | Mar 11, 2022 | 6.8 | 22 | NO | NO |
CVE-2020-8703MEDIUM Improper buffer restrictions in a subsystem in the Intel(R) CSME versions before 11.8.86, 11.12.86, 11.22.86, 12.0.81, 13.0.47, 13.30.17, 14.1.53, 14.5.32 and 15.0.22 may allow a p | Jun 9, 2021 | 6.7 | 22 | NO | NO |
CVE-2022-29494MEDIUM Improper input validation in firmware for OpenBMC in some Intel(R) platforms before versions egs-0.91-179 and bhs-04-45 may allow an authenticated user to potentially enable denial | Feb 16, 2023 | 6.5 | 21 | NO | NO |
CVE-2022-0004MEDIUM Hardware debug modes and processor INIT setting that allow override of locks for some Intel(R) Processors in Intel(R) Boot Guard and Intel(R) TXT may allow an unauthenticated user | May 12, 2022 | 6.8 | 21 | NO | NO |
CVE-2023-22841HIGH Unquoted search path in the software installer for the System Firmware Update Utility (SysFwUpdt) for some Intel(R) Server Boards and Intel(R) Server Systems Based on Intel(R) 621A | Aug 11, 2023 | 7.3 | 20 | NO | NO |
CVE-2021-0060MEDIUM Insufficient compartmentalization in HECI subsystem for the Intel(R) SPS before versions SPS_E5_04.01.04.516.0, SPS_E5_04.04.04.033.0, SPS_E5_04.04.03.281.0, SPS_E5_03.01.03.116.0, | Feb 9, 2022 | 6.6 | 19 | NO | NO |
CVE-2022-29493MEDIUM Uncaught exception in webserver for the Integrated BMC in some Intel(R) platforms before versions 2.86, 2.09 and 2.78 may allow a privileged user to potentially enable denial of se | Feb 16, 2023 | 4.9 | 18 | NO | NO |
CVE-2021-33107MEDIUM Insufficiently protected credentials in USB provisioning for Intel(R) AMT SDK before version 16.0.3, Intel(R) SCS before version 12.2 and Intel(R) MEBx before versions 11.0.0.0012, | Feb 9, 2022 | 4.6 | 18 | NO | NO |
CVE-2020-24507MEDIUM Improper initialization in a subsystem in the Intel(R) CSME versions before 11.8.86, 11.12.86, 11.22.86, 12.0.81, 13.0.47, 13.30.17, 14.1.53, 14.5.32, 13.50.11 and 15.0.22 may allo | Jun 9, 2021 | 4.4 | 18 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (10 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (10 CVEs).
Media Mentions
Signals from CVEs in this product scope (10 CVEs).
Top CNAs Publishing CVEs For C621a
Top CWEs
Versions
No cataloged versions.