ZeroHour

CVE-2020-24506

CVSS 3.1
4.4 medium
EPSS
<1%p21
Published
()
Modified
Description

Out of bound read in a subsystem in the Intel(R) CSME versions before 12.0.81, 13.0.47, 13.30.17, 14.1.53 and 14.5.32 may allow a privileged user to potentially enable information disclosure via local access.

Vendors
intelsiemens
Products
converged security and manageability engine, simatic field pg m6 firmware, simatic ipc627e firmware, simatic ipc647e firmware, simatic ipc677e firmware, simatic ipc847e firmware
Weakness
CWE-125
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.