7.5
CVSSv3

CVE-2020-0536

Published: 15/06/2020 Updated: 22/07/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Improper input validation in the DAL subsystem for Intel(R) CSME versions prior to 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32,14.0.33 and Intel(R) TXE versions prior to 3.1.75 and 4.0.25 may allow an unauthenticated user to potentially enable information disclosure via network access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel converged security management engine firmware

intel trusted execution engine firmware

Vendor Advisories

HP has been notified by Intel of potential security vulnerabilities in the Intel® Converged Security and Manageability Engine (CSME), Server Platform Services (SPS), Intel® Trusted Execution Engine (TXE), Intel® Active Management Technology (AMT) and Intel® Dynamic Application Loader (DAL) may allow escalation of privilege, denial of service o ...
HP has been notified by Intel of potential security vulnerabilities in the Intel® Converged Security and Manageability Engine (CSME), Server Platform Services (SPS), Intel® Trusted Execution Engine (TXE), Intel® Active Management Technology (AMT) and Intel® Dynamic Application Loader (DAL) may allow escalation of privilege, denial of service o ...