AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-20885

HIGH · CVSS 7 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

Improper authentication in the Intel TDX module on certain Intel platforms can lead to information disclosure and privilege escalation, particularly for system software adversaries with privileged access. This vulnerability requires local access and can be exploited without user interaction, posing a significant risk to system confidentiality and integrity. Organizations utilizing affected Intel platforms should prioritize patching to mitigate potential security breaches.

CVE
CVE-2026-20885
Severity
HIGH
CVSS
7
EPSS
0.15%

Original NVD Description

Improper authentication in the Intel(R) TDX module for some Intel(R) platforms within Ring 0: Trust Domain may allow an information disclosure and escalation of privilege. System software adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.