#VU26075 Information disclosure in MAX 10 FPGA - CVE-2020-0574
Published: March 13, 2020
Vulnerability identifier: #VU26075
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2020-0574
CWE-ID: CWE-200
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerable software:
MAX 10 FPGA
MAX 10 FPGA
Software vendor:
Intel
Intel
Description
The vulnerability allows a local attacker to gain access to potentially sensitive information.
The vulnerability exists due to improper configuration in block design. An attacker with physical access can gain unauthorized access to sensitive information on the system.
Remediation
Cybersecurity Help is currently unaware of any official solution to address this vulnerability.