6.7
CVSSv3

CVE-2018-12190

Published: 14/03/2019 Updated: 01/05/2019
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insufficient input validation in Intel(r) CSME subsystem prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel(r) TXE prior to 3.1.60 or 4.0.10 may allow a privileged user to potentially enable an escalation of privilege via local access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel trusted execution engine firmware

intel converged security management engine firmware

Vendor Advisories

Potential security vulnerabilities have been identified with Intel® CSME, Server Platform Services, Trusted Execution Engine, and Intel® Active Management Technology that may allow users to potentially escalate privileges, disclose information or cause a denial of service ...
Potential security vulnerabilities have been identified with Intel® CSME, Server Platform Services, Trusted Execution Engine, and Intel® Active Management Technology that may allow users to potentially escalate privileges, disclose information or cause a denial of service ...