AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-20705

MEDIUM · CVSS 6.8 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The Intel TDX module on certain Intel platforms is vulnerable due to insecure storage of sensitive information within Ring 0, potentially allowing a privileged system software adversary to disclose confidential data. This vulnerability can be exploited through local access without requiring user interaction, posing a significant risk to system confidentiality. Organizations using affected Intel platforms should prioritize remediation efforts to mitigate the risk of data exposure.

CVE
CVE-2026-20705
Severity
MEDIUM
CVSS
6.8
EPSS
0.10%

Original NVD Description

Insecure storage of sensitive information in the Intel(R) TDX module for some Intel(R) platform within Ring 0: Trust Domain may allow information disclosure. System software adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (none) and availability (none) impacts.