ZeroHour

CVE-2019-11103

CVSS 3.1
7.8 high
EPSS
<1%p29
Published
()
Modified
Description

Insufficient input validation in firmware update software for Intel(R) CSME before versions 12.0.45,13.0.10 and 14.0.10 may allow an authenticated user to potentially enable escalation of privilege via local access.

Vendors
intel
Products
converged security management engine firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.