CVE-2025-20009

Medium severity, CVSS 4.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper input validation in the UEFI firmware GenerationSetup module for the Intel(R) Server D50DNP and M50FCP boards may allow a privileged user to potentially enable information disclosure via local access.

Published 2025-05-13. Last modified 2026-06-17.