# CVE-2025-20629

## Summary

- **CVE ID:** CVE-2025-20629
- **Severity:** MEDIUM
- **CVSS Score:** 6.7 (CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N)
- **CWE:** CWE-277
- **Published:** May 13, 2025
- **Last Modified:** Mar 12, 2026

## Description

Insecure inherited permissions in the NVM Update Utility for some Intel(R) Ethernet Network Adapter E810 Series before version 4.60 may allow an authenticated user to potentially enable escalation of privilege via local access.

## Affected Products

- n/a — Intel(R) Ethernet Network Adapter E810 Series (before version 4.60)

## References

- [CNA](https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01295.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.13%
- **EPSS Percentile:** 3.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._