CVE-2018-12188
CVE-2018-12188
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
14 Mar 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Insufficient input validation in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before version 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially modify data via physical access.
Affected products
Intel Corporation · Intel(R) CSME, Server Platform Services, Trusted Execution Engine and Intel(R) Active Management TechnologyWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →