7.2
CVSSv2

CVE-2018-3657

Published: 12/09/2018 Updated: 17/08/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple buffer overflows in Intel AMT in Intel CSME firmware versions before version 12.0.5 may allow a privileged user to potentially execute arbitrary code with Intel AMT execution privilege via local access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

siemens simatic_field_pg_m5_firmware

siemens simatic_ipc427e_firmware

siemens simatic_ipc477e_firmware

siemens simatic_ipc547e_firmware

siemens simatic_pc547g_firmware

siemens simatic_ipc627d_firmware

siemens simatic_ipc647d_firmware

siemens simatic_ipc677d_firmware

siemens simatic_ipc827d_firmware

siemens simatic_ipc847d_firmware

siemens simatic_itp1000_firmware

intel manageability engine firmware

intel active management technology firmware

intel converged security management engine firmware

Vendor Advisories

Potential security vulnerabilities with Intel CSME firmware and PMC firmware have been identified that could potentially place impacted platforms at risk ...
Potential security vulnerabilities with Intel CSME firmware and PMC firmware have been identified that could potentially place impacted platforms at risk ...