ZeroHour

CVE-2018-12188

CVSS 3.0
4.6 medium
EPSS
<1%p27
Published
()
Modified
Description

Insufficient input validation in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before version 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially modify data via physical access.

Vendors
intel
Products
converged security management engine firmware, trusted execution engine firmware
Weakness
CWE-20
Vector
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.