4.6
CVSSv2

CVE-2019-0086

Published: 17/05/2019 Updated: 24/08/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insufficient access control vulnerability in Dynamic Application Loader software for Intel(R) CSME prior to 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) TXE 3.1.65, 4.0.15 may allow an unprivileged user to potentially enable escalation of privilege via local access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel converged security management engine firmware

intel trusted execution engine firmware

Vendor Advisories

Multiple potential security vulnerabilities have been identified with Intel® CSME, Trusted Execution Engine and Intel® Active Management Technology which may allow users to potentially escalate privileges, disclose information or cause a denial of service ...
Multiple potential security vulnerabilities have been identified with Intel® CSME, Trusted Execution Engine and Intel® Active Management Technology which may allow users to potentially escalate privileges, disclose information or cause a denial of service ...