6.7
CVSSv3

CVE-2019-11106

Published: 18/12/2019 Updated: 31/12/2019
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insufficient session validation in the subsystem for Intel(R) CSME prior to 11.8.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable escalation of privilege via local access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel converged security management engine firmware

intel trusted execution engine firmware

Vendor Advisories

Multiple security vulnerabilities have been identified by Intel Intel is releasing updates for Intel® CSME, Server Platform Services, TXE, Intel® AMT and Intel® DAL to mitigate these vulnerabilities ...
Multiple security vulnerabilities have been identified by Intel Intel is releasing updates for Intel® CSME, Server Platform Services, TXE, Intel® AMT and Intel® DAL to mitigate these vulnerabilities ...