Race condition in subsystem for Intel(R) CSME versions before 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
2020-11-12T18:15:17.987
2024-11-21T05:39:23.113
Modified
CVSSv3.1: 6.4 (MEDIUM)
AV:L/AC:M/Au:N/C:P/I:P/A:P
3.4
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | intel | converged_security_and_management_engine | < 12.0.70 | Yes |
Application | intel | converged_security_and_management_engine | < 14.0.45 | Yes |
Application | intel | server_platform_services | < e5_04.01.04.400 | Yes |
Application | intel | server_platform_services | < e3_05.01.04.200 | Yes |