AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-9085

MEDIUM · CVSS 4.9 EPSS 0.66%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-11-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-9085
Severity
MEDIUM
CVSS
4.9
EPSS
0.66%

Original NVD Description

A write protection lock bit was left unset after boot on an older generation of Lenovo and IBM System x servers, potentially allowing an attacker with administrator access to modify the subset of flash memory containing Intel Server Platform Services (SPS) and the system Flash Descriptors.