Metrics
No CVSS v4.0
Attack Vector Local
Attack Complexity Low
Privileges Required High
Scope Changed
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
No CVSS v3.0
Access Vector Local
Access Complexity Low
Authentication None
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
This CVE is not in the KEV list.
The EPSS score is 0.00288.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Intel
Subscribe
|
Converged Security Management Engine Firmware
Subscribe
Core I3
Subscribe
Core I5
Subscribe
Core I7
Subscribe
Core I9
Subscribe
Xeon E3 1220 V5
Subscribe
Xeon E3 1220 V6
Subscribe
Xeon E3 1225 V5
Subscribe
Xeon E3 1225 V6
Subscribe
Xeon E3 1230 V5
Subscribe
Xeon E3 1230 V6
Subscribe
Xeon E3 1235l V5
Subscribe
Xeon E3 1240 V5
Subscribe
Xeon E3 1240 V6
Subscribe
Xeon E3 1240l V5
Subscribe
Xeon E3 1245 V5
Subscribe
Xeon E3 1245 V6
Subscribe
Xeon E3 1260l V5
Subscribe
Xeon E3 1270 V5
Subscribe
Xeon E3 1270 V6
Subscribe
Xeon E3 1275 V6
Subscribe
Xeon E3 1280 V5
Subscribe
Xeon E3 1280 V6
Subscribe
Xeon E3 1285 V6
Subscribe
Xeon W
Subscribe
|
|
Netapp
Subscribe
|
Element Software Management Node
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-15481 | Logic bug in Intel Converged Security Management Engine 11.x may allow an attacker to execute arbitrary code via local privileged access. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: intel
Published:
Updated: 2024-08-05T04:50:30.378Z
Reserved: 2017-12-28T00:00:00
Link: CVE-2018-3627
No data.
Status : Modified
Published: 2018-07-10T21:29:00.810
Modified: 2024-11-21T04:05:47.670
Link: CVE-2018-3627
No data.
OpenCVE Enrichment
No data.
EUVD