8.3
CVSSv2

CVE-2018-3628

Published: 10/07/2018 Updated: 24/08/2020
CVSS v2 Base Score: 8.3 | Impact Score: 10 | Exploitability Score: 6.5
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 739
Vector: AV:A/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in HTTP handler in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 3.x, 4.x, 5.x, 6.x, 7.x, 8.x, 9.x, 10.x, and 11.x may allow an malicious user to execute arbitrary code via the same subnet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel active_management_technology_firmware

Vendor Advisories

Intel has identified security vulnerabilities that could potentially place affected platforms at risk The issues affect Intel® Active Management Technology A vulnerability in Intel® Management Engine 11x may allow an attacker to execute arbitrary code via local privileged access ...