7.6
CVSSv3

CVE-2018-12191

Published: 14/03/2019 Updated: 10/09/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.6 | Impact Score: 6 | Exploitability Score: 0.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services prior to 4.00.04.383 or SPS 4.01.02.174, or Intel(R) TXE prior to 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially execute arbitrary code via physical access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel converged security management engine firmware

intel server platform services firmware

intel trusted execution engine firmware

Vendor Advisories

Potential security vulnerabilities have been identified with Intel® CSME, Server Platform Services, Trusted Execution Engine, and Intel® Active Management Technology that may allow users to potentially escalate privileges, disclose information or cause a denial of service ...
Potential security vulnerabilities have been identified with Intel® CSME, Server Platform Services, Trusted Execution Engine, and Intel® Active Management Technology that may allow users to potentially escalate privileges, disclose information or cause a denial of service ...