Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2018-3612


Intel NUC kits with insufficient input validation in system firmware, potentially allows a local attacker to elevate privileges to System Management Mode (SMM).


Published

2018-05-10T22:29:00.307

Last Modified

2024-11-21T04:05:46.240

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 7.8 (HIGH)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

3.9

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System intel bios ayaplcel.86a Yes
Operating System intel bios bnkbl357.86a Yes
Operating System intel bios ccsklm5v.86a Yes
Operating System intel bios ccsklm30.86a Yes
Operating System intel bios dnkbli5v.86a Yes
Operating System intel bios dnkbli7v.86a Yes
Operating System intel bios dnkbli30.86a Yes
Operating System intel bios fybyt10h.86a Yes
Operating System intel bios gkaplcpx.86a Yes
Operating System intel bios kyskli70.86a Yes
Operating System intel bios mkkbli5v.86a Yes
Operating System intel bios mkkbly35.86a Yes
Operating System intel bios mybdwi5v.86a Yes
Operating System intel bios mybdwi30.86a Yes
Operating System intel bios rybdwi35.86a Yes
Operating System intel bios syskli35.86a Yes
Operating System intel bios tybyt10h.86a Yes
Operating System intel ayaplcel.86a - Yes
Operating System intel bnkbl357.86a - Yes
Operating System intel ccsklm30.86a - Yes
Operating System intel ccsklm5v.86a - Yes
Operating System intel dnkbli30.86a - Yes
Operating System intel dnkbli5v.86a - Yes
Operating System intel dnkbli7v.86a - Yes
Operating System intel fybyt10h.86a - Yes
Operating System intel gkaplcpx.86a - Yes
Operating System intel kyskli70.86a - Yes
Operating System intel mkkbli5v.86a - Yes
Operating System intel mkkbly35.86a - Yes
Operating System intel mybdwi30.86a - Yes
Operating System intel mybdwi5v.86a - Yes
Operating System intel rybdwi35.86a - Yes
Operating System intel syskli35.86a - Yes
Operating System intel tybyt10h.86a - Yes

References