ZeroHour

CVE-2019-14598

CVSS 3.1
6.7 medium
EPSS
<1%p38
Published
()
Modified
Description

Improper Authentication in subsystem in Intel(R) CSME versions 12.0 through 12.0.48 (IOT only: 12.0.56), versions 13.0 through 13.0.20, versions 14.0 through 14.0.10 may allow a privileged user to potentially enable escalation of privilege, denial of service or information disclosure via local access.

Vendors
intelnetapp
Products
converged security management engine firmware, steelstore cloud integrated storage
Weakness
CWE-287
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.