CVE-2019-0099: Intel Server Platform Services Firmware

Medium severity, CVSS 6.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Insufficient access control vulnerability in subsystem in Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Affected products

  • Intel Server Platform Services Firmware: before sps_e3_05.00.04.027.0 (fixed in sps_e3_05.00.04.027.0)

Published 2019-05-17. Last modified 2026-06-17.