CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.8. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.
CVE
CVE-2019-11098
Severity
MEDIUM
CVSS
6.8
EPSS
0.34%
Original NVD Description
Insufficient input validation in MdeModulePkg in EDKII may allow an unauthenticated user to potentially enable escalation of privilege, denial of service and/or information disclosure via physical access.
Related CVEs
Other vulnerabilities affecting the same vendor(s)