4.6
CVSSv2

CVE-2019-11103

Published: 18/12/2019 Updated: 02/01/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insufficient input validation in firmware update software for Intel(R) CSME prior to 12.0.45,13.0.10 and 14.0.10 may allow an authenticated user to potentially enable escalation of privilege via local access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel converged security management engine firmware

Vendor Advisories

Multiple security vulnerabilities have been identified by Intel Intel is releasing updates for Intel® CSME, Server Platform Services, TXE, Intel® AMT and Intel® DAL to mitigate these vulnerabilities ...
Multiple security vulnerabilities have been identified by Intel Intel is releasing updates for Intel® CSME, Server Platform Services, TXE, Intel® AMT and Intel® DAL to mitigate these vulnerabilities ...