Intel Converged Security Management Engine Firmware (CSME) 11.11.79

CPE Details

Intel Converged Security Management Engine Firmware (CSME) 11.11.79
11.11.79
2021-03-12
15h56 +00:00
2021-05-04
08h37 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:intel:converged_security_management_engine_firmware:11.11.79:*:*:*:*:*:*:*

Informations

Vendor

intel

Product

converged_security_management_engine_firmware

Version

11.11.79

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-38102 2023-08-11 02h36 +00:00 Improper Input validation in firmware for some Intel(R) Converged Security and Management Engine before versions 15.0.45, and 16.1.27 may allow a privileged user to potentially enable denial of service via local access.
7.2
High
CVE-2020-0539 2020-06-15 12h01 +00:00 Path traversal in subsystem for Intel(R) DAL software for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32, 14.0.33 and Intel(R) TXE versions before 3.1.75, 4.0.25 may allow an unprivileged user to potentially enable denial of service via local access.
5.5
Medium
CVE-2020-0545 2020-06-15 12h00 +00:00 Integer overflow in subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77 and Intel(R) TXE versions before 3.1.75, 4.0.25 and Intel(R) Server Platform Services (SPS) versions before SPS_E5_04.01.04.380.0, SPS_SoC-X_04.00.04.128.0, SPS_SoC-A_04.00.04.211.0, SPS_E3_04.01.04.109.0, SPS_E3_04.08.04.070.0 may allow a privileged user to potentially enable denial of service via local access.
4.4
Medium
CVE-2020-0536 2020-06-15 12h00 +00:00 Improper input validation in the DAL subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32,14.0.33 and Intel(R) TXE versions before 3.1.75 and 4.0.25 may allow an unauthenticated user to potentially enable information disclosure via network access.
7.5
High
CVE-2020-0533 2020-06-15 11h58 +00:00 Reversible one-way hash in Intel(R) CSME versions before 11.8.76, 11.12.77 and 11.22.77 may allow a privileged user to potentially enable escalation of privilege, denial of service or information disclosure via local access.
6.7
Medium
CVE-2020-0542 2020-06-15 11h57 +00:00 Improper buffer restrictions in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an authenticated user to potentially enable escalation of privilege, information disclosure or denial of service via local access.
7.8
High
CVE-2018-3643 2018-09-12 19h00 +00:00 A vulnerability in Power Management Controller firmware in systems using specific Intel(R) Converged Security and Management Engine (CSME) before version 11.8.55, 11.11.55, 11.21.55, 12.0.6 or Intel(R) Server Platform Services firmware before version 4.x.04 may allow an attacker with administrative privileges to uncover certain platform secrets via local access or to potentially execute arbitrary code.
8.2
High
CVE-2018-3659 2018-09-12 19h00 +00:00 A vulnerability in Intel PTT module in Intel CSME firmware before version 12.0.5 and Intel TXE firmware before version 4.0 may allow an unauthenticated user to potentially disclose information via physical access.
6.8
Medium