Intel Server Boards D50DNP and M50FCP BackupBiosUpdate UEFI Firmware Improper Input Validation Vulnerability Allowing Information Disclosure

Vulnerability

A vulnerability exists in the BackupBiosUpdate UEFI firmware SmiVariable driver for Intel Server D50DNP and M50FCP boards, prior to version R01.02.0003. This vulnerability arises from improper input validation, which may enable a privileged user to disclose information through local access.

Impact

Exploitation of this vulnerability could lead to unauthorized information disclosure.

Remediation

Users are advised to update Intel Server Board D50DNP and M50FCP to UEFI version R01.02.0003 or later. The update is available through the Intel Download Center.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.