Show filters
46 Total Results
Displaying 41-46 of 46
Sort by:
Attacker Value
Unknown

CVE-2018-3643

Disclosure Date: September 12, 2018 (last updated November 27, 2024)
A vulnerability in Power Management Controller firmware in systems using specific Intel(R) Converged Security and Management Engine (CSME) before version 11.8.55, 11.11.55, 11.21.55, 12.0.6 or Intel(R) Server Platform Services firmware before version 4.x.04 may allow an attacker with administrative privileges to uncover certain platform secrets via local access or to potentially execute arbitrary code.
0
Attacker Value
Unknown

CVE-2018-3659

Disclosure Date: September 12, 2018 (last updated November 27, 2024)
A vulnerability in Intel PTT module in Intel CSME firmware before version 12.0.5 and Intel TXE firmware before version 4.0 may allow an unauthenticated user to potentially disclose information via physical access.
0
Attacker Value
Unknown

CVE-2018-3657

Disclosure Date: September 12, 2018 (last updated November 27, 2024)
Multiple buffer overflows in Intel AMT in Intel CSME firmware versions before version 12.0.5 may allow a privileged user to potentially execute arbitrary code with Intel AMT execution privilege via local access.
Attacker Value
Unknown

CVE-2018-3616

Disclosure Date: September 12, 2018 (last updated November 27, 2024)
Bleichenbacher-style side channel vulnerability in TLS implementation in Intel Active Management Technology before 12.0.5 may allow an unauthenticated user to potentially obtain the TLS session key via the network.
Attacker Value
Unknown

CVE-2018-3658

Disclosure Date: September 12, 2018 (last updated November 27, 2024)
Multiple memory leaks in Intel AMT in Intel CSME firmware versions before 12.0.5 may allow an unauthenticated user with Intel AMT provisioned to potentially cause a partial denial of service via network access.
Attacker Value
Unknown

CVE-2018-3627

Disclosure Date: July 10, 2018 (last updated November 27, 2024)
Logic bug in Intel Converged Security Management Engine 11.x may allow an attacker to execute arbitrary code via local privileged access.