6.8
CVSSv3

CVE-2020-8745

Published: 12/11/2020 Updated: 14/10/2022
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insufficient control flow management in subsystem for Intel(R) CSME versions prior to 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25 , Intel(R) TXE versions prior to 3.1.80 and 4.0.30 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intel converged security and manageability engine

intel trusted execution technology

siemens simatic_drive_controller_firmware

siemens simatic_et200sp_1515sp_pc2_firmware

siemens simatic_field_pg_m5_firmware

siemens simatic_field_pg_m6_firmware -

siemens simatic_ipc127e_firmware

siemens simatic_ipc427e_firmware

siemens simatic_ipc477e_firmware

siemens simatic_ipc527g_firmware

siemens simatic_ipc547g_firmware

siemens simatic_ipc627e_firmware

siemens simatic_ipc647e_firmware

siemens simatic_ipc667e_firmware

siemens simatic_ipc847e_firmware

siemens simatic_itp1000_firmware

siemens sinumerik_828d_hw_pu.4_firmware

siemens sinumerik_mc_mcu_1720_firmware

siemens sinumerik_one_firmware -

siemens sinumerik_840d_sl_ht_10_firmware -

siemens sinumerik_one_ncu_1740_firmware

siemens sinumerik_one_ppu_1740_firmware

Vendor Advisories

Intel has informed HP of potential security vulnerabilities identified in Intel® Converged Security and Manageability Engine (CSME), Server Platform Services (SPS), Intel® Trusted Execution Engine (TXE), Intel® Dynamic Application Loader (DAL), Intel® Active Management Technology (AMT), Intel® Standard Manageability (ISM) and Intel® Dynamic A ...
Intel has informed HP of potential security vulnerabilities identified in Intel® Converged Security and Manageability Engine (CSME), Server Platform Services (SPS), Intel® Trusted Execution Engine (TXE), Intel® Dynamic Application Loader (DAL), Intel® Active Management Technology (AMT), Intel® Standard Manageability (ISM) and Intel® Dynamic A ...