Attacker Value
Unknown
0
CVE-2017-5712
0
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2017-5712
(Last updated November 26, 2024) ▾
MITRE ATT&CK
Log in to add MITRE ATT&CK tag
Add MITRE ATT&CK tactics and techniques that apply to this CVE.
MITRE ATT&CK
Select the MITRE ATT&CK Tactics that apply to this CVE
Collection
Select any Techniques used:
Command and Control
Select any Techniques used:
Credential Access
Select any Techniques used:
Defense Evasion
Select any Techniques used:
Discovery
Select any Techniques used:
Execution
Select any Techniques used:
Exfiltration
Select any Techniques used:
Impact
Select any Techniques used:
Initial Access
Select any Techniques used:
Lateral Movement
Select any Techniques used:
Persistence
Select any Techniques used:
Privilege Escalation
Select any Techniques used:
Topic Tags
Select the tags that apply to this CVE (Assessment added tags are disabled and cannot be removed)
What makes this of high-value to an attacker?
What makes this of low-value to an attacker?
Description
Buffer overflow in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allows attacker with remote Admin access to the system to execute arbitrary code with AMT execution privilege.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
Data provided by the National Vulnerability Database (NVD)
Base Score:
7.2 High
Impact Score:
5.9
Exploitability Score:
1.2
Attack Vector (AV):
Network
Attack Complexity (AC):
Low
Privileges Required (PR):
High
User Interaction (UI):
None
Scope (S):
Unchanged
Confidentiality (C):
High
Integrity (I):
High
Availability (A):
High
General Information
Offensive Application
Unknown
Utility Class
Unknown
Ports
Unknown
OS
Unknown
Vulnerable Versions
Active Management Technology 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20
Prerequisites
Unknown
Discovered By
Unknown
PoC Author
Unknown
Metasploit Module
Unknown
Reporter
Unknown
Vendors
- asus,
- intel,
- siemens
Products
- active management technology firmware -,
- b150 pro gaming d3 firmware -,
- b150 pro gaming firmware -,
- b150 pro gaming/aura firmware -,
- b150-a firmware -,
- b150-plus firmware -,
- b150-pro d3 firmware -,
- b150-pro firmware -,
- b150i pro gaming/aura firmware -,
- b150i pro gaming/wifi/aura firmware -,
- b150m pro gaming firmware -,
- b150m-a d3 firmware -,
- b150m-a firmware -,
- b150m-a/m.2 firmware -,
- b150m-c d3 firmware -,
- b150m-c firmware -,
- b150m-c/br firmware -,
- b150m-d firmware -,
- b150m-f plus firmware -,
- b150m-k d3 firmware -,
- b150m-k firmware -,
- b150m-plus d3 firmware -,
- b150m-plus firmware -,
- b150m-v plus firmware -,
- b250 mining expert firmware -,
- b250-mr firmware -,
- b250-s firmware -,
- b250m-c pro firmware -,
- b250m-f plus firmware -,
- ex-b150-v7 firmware -,
- ex-b150m-v firmware -,
- ex-b150m-v3 firmware -,
- ex-b150m-v5 firmware -,
- ex-b250-v7 firmware -,
- ex-b250m-v firmware -,
- ex-b250m-v3 firmware -,
- ex-b250m-v5 firmware -,
- ex-h110m-v firmware -,
- ex-h110m-v3 firmware -,
- h110-plus firmware -,
- h110i-plus firmware -,
- h110m-a d3 firmware -,
- h110m-a firmware -,
- h110m-a/dp firmware -,
- h110m-a/m.2 firmware -,
- h110m-c firmware -,
- h110m-c/br firmware -,
- h110m-c/hdmi firmware -,
- h110m-c/ps firmware -,
- h110m-c2 firmware -,
- h110m-c2/tf firmware -,
- h110m-cs firmware -,
- h110m-cs x firmware -,
- h110m-cs/br firmware -,
- h110m-d firmware -,
- h110m-d/exper/si firmware -,
- h110m-e firmware -,
- h110m-e/m.2 firmware -,
- h110m-f firmware -,
- h110m-k d3 firmware -,
- h110m-k firmware -,
- h110m-k x firmware -,
- h110m-ks firmware -,
- h110m-ks r1 firmware -,
- h110m-p/dvi firmware -,
- h110m-plus firmware -,
- h110m-r firmware -,
- h110m-ts firmware -,
- h110s1 firmware -,
- h110s2 firmware -,
- h110t firmware -,
- h110t-a firmware -,
- h170 pro gaming firmware -,
- h170-plus d3 firmware -,
- h170-pro firmware -,
- h170-pro/usb 3.1 firmware -,
- h170i-pro firmware -,
- h170m-e d3 firmware -,
- h170m-plus firmware -,
- h170m-plus/br firmware -,
- manageability engine firmware,
- manageability engine firmware 11.0,
- manageability engine firmware 11.10,
- manageability engine firmware 11.20,
- manageability engine firmware 11.5,
- manageability engine firmware 11.6,
- manageability engine firmware 11.7,
- pio-b150m firmware -,
- pio-b250i firmware -,
- prime b250-a firmware -,
- prime b250-plus firmware -,
- prime b250-pro firmware -,
- prime b250m-a firmware -,
- prime b250m-c firmware -,
- prime b250m-d firmware -,
- prime b250m-j firmware -,
- prime b250m-k firmware -,
- prime b250m-plus firmware -,
- prime b250m-plus/br firmware -,
- prime h110m-p firmware -,
- prime h110m2 firmware -,
- prime h110m2/fpt firmware -,
- prime h270-plus firmware -,
- prime h270-pro firmware -,
- prime h270m-plus firmware -,
- prime j3355i-c firmware -,
- prime q270m-c firmware -,
- prime z270-a firmware -,
- prime z270-ar firmware -,
- prime z270-k firmware -,
- prime z270-p firmware -,
- prime z270m-plus firmware -,
- prime z270m-plus/br firmware -,
- prime z370-a firmware -,
- prime z370-p firmware -,
- q170m-c firmware -,
- q170m-cm-b firmware -,
- q170m2 firmware -,
- q170m2/cdm/si firmware -,
- q170s1 firmware -,
- q170t firmware -,
- q170t v2 firmware -,
- q270-s firmware -,
- q270m-cm-a firmware -,
- rog maximus ix apex firmware -,
- rog maximus ix code firmware -,
- rog maximus ix extreme firmware -,
- rog maximus ix formula firmware -,
- rog maximus ix hero firmware -,
- rog maximus viii extreme firmware -,
- rog maximus viii formula firmware -,
- rog maximus viii gene firmware -,
- rog maximus viii hero alpha firmware -,
- rog maximus viii hero firmware -,
- rog maximus viii impact firmware -,
- rog maximus viii ranger firmware -,
- rog maximus x apex firmware -,
- rog maximus x code firmware -,
- rog maximus x formula firmware -,
- rog maximus x hero firmware -,
- rog strix b250f gaming firmware -,
- rog strix b250g gaming firmware -,
- rog strix b250h gaming firmware -,
- rog strix b250i gaming firmware -,
- rog strix h270f gaming firmware -,
- rog strix h270i gaming firmware -,
- rog strix z270e gaming firmware -,
- rog strix z270f gaming firmware -,
- rog strix z270g gaming firmware -,
- rog strix z270h gaming firmware -,
- rog strix z270h gaming/k1 firmware -,
- rog strix z270i gaming firmware -,
- rog strix z370-e gaming firmware -,
- rog strix z370-f gaming firmware -,
- rog strix z370-g gaming firmware -,
- rog strix z370-h gaming firmware -,
- rog strix z370-i gaming firmware -,
- sabertooth z170 mark 1 firmware -,
- sabertooth z170 s firmware -,
- simatic field pg m3 firmware,
- simatic field pg m4 firmware,
- simatic field pg m5 firmware,
- simatic ipc427d firmware -,
- simatic ipc427e firmware,
- simatic ipc477d firmware -,
- simatic ipc477d pro firmware -,
- simatic ipc477e firmware,
- simatic ipc547d firmware,
- simatic ipc547e firmware,
- simatic ipc627c firmware,
- simatic ipc627d firmware,
- simatic ipc647c firmware,
- simatic ipc647d firmware,
- simatic ipc677c firmware,
- simatic ipc677d firmware,
- simatic ipc827c firmware,
- simatic ipc827d firmware,
- simatic ipc847c firmware,
- simatic ipc847d firmware,
- simatic itp1000 firmware,
- simotion p320-4s firmware,
- sinumerik pcu50.5-c firmware,
- sinumerik pcu50.5-p firmware,
- trooper b150 d3 firmware -,
- trooper h110 d3 firmware -,
- tuf z270 mark 1 firmware -,
- tuf z270 mark 2 firmware -,
- tuf z370-plus gaming firmware -,
- tuf z370-pro gaming firmware -,
- z170 pro gaming firmware -,
- z170 pro gaming/aura firmware -,
- z170-a firmware -,
- z170-ar firmware -,
- z170-deluxe firmware -,
- z170-e firmware -,
- z170-k firmware -,
- z170-p d3 firmware -,
- z170-p firmware -,
- z170-premium firmware -,
- z170-pro firmware -,
- z170i pro gaming firmware -,
- z170m-e d3 firmware -,
- z170m-plus firmware -,
- z170m-plus/br firmware -
References
Advisory
Additional Info
Authenticated
Unknown
Exploitable
Unknown
Reliability
Unknown
Stability
Unknown
Available Mitigations
Unknown
Shelf Life
Unknown
Userbase/Installbase
Unknown
Patch Effectiveness
Unknown
Rapid7
Technical Analysis
Report as Emergent Threat Response
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: