Incorrect default permissions in some Intel(R) CSME installer software before version 2328.5.5.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-32085 | Incorrect default permissions in some Intel(R) CSME installer software before version 2328.5.5.0 may allow an authenticated user to potentially enable escalation of privilege via local access. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 04 Nov 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 04 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Intel
Intel converged Security And Manageability Engine |
|
| CPEs | cpe:2.3:a:intel:converged_security_and_manageability_engine:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Intel
Intel converged Security And Manageability Engine |
|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: intel
Published:
Updated: 2025-11-04T16:10:04.595Z
Reserved: 2023-05-11T03:00:02.698Z
Link: CVE-2023-28389
Updated: 2025-11-04T16:10:04.595Z
Status : Awaiting Analysis
Published: 2024-03-14T17:15:50.333
Modified: 2025-11-04T17:15:36.110
Link: CVE-2023-28389
No data.
OpenCVE Enrichment
No data.
EUVD