CVE-2018-12185
CVE-2018-12185
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.4%KEV nãoPoC —Patch —
Lifecycle
14 Mar 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Insufficient input validation in Intel(R) AMT in Intel(R) CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow an unauthenticated user to potentially execute arbitrary code via physical access.
Affected products
Intel Corporation · Intel(R) CSME, Server Platform Services, Trusted Execution Engine and Intel(R) Active Management TechnologyWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →