AUGUST 14, 2026
Live Feed
Back to database
Case File

CVE-2026-28729

LOW · CVSS 2.4 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

The vulnerability exists in the UEFI firmware of the Intel Slim Bootloader, allowing for potential information disclosure through an integer overflow. While the impact on confidentiality, integrity, and availability is low, a system software adversary with authenticated user access could exploit this vulnerability, possibly leading to a denial of service. Organizations using affected Intel firmware should prioritize addressing this issue, particularly those with environments where authenticated users may have local access.

CVE
CVE-2026-28729
Severity
LOW
CVSS
2.4
EPSS
0.11%

Original NVD Description

Integer overflow in the UEFI firmware for the Intel(R) Slim Bootloader may allow an information disclosure. System software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires active user interaction. The potential vulnerability may impact the confidentiality (low), integrity (none) and availability (low) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (none) and availability (low) impacts.