2.1
CVSSv2

CVE-2019-0093

Published: 17/05/2019 Updated: 24/08/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 4.4 | Impact Score: 3.6 | Exploitability Score: 0.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Insufficient data sanitization vulnerability in HECI subsystem for Intel(R) CSME prior to 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow a privileged user to potentially enable information disclosure via local access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel converged security and management engine

Vendor Advisories

Multiple potential security vulnerabilities have been identified with Intel® CSME, Trusted Execution Engine and Intel® Active Management Technology which may allow users to potentially escalate privileges, disclose information or cause a denial of service ...
Multiple potential security vulnerabilities have been identified with Intel® CSME, Trusted Execution Engine and Intel® Active Management Technology which may allow users to potentially escalate privileges, disclose information or cause a denial of service ...