PT-2019-4276 · Intel · Intel Baseboard Management Controller

Published

2019-11-12

·

Updated

2019-11-19

·

CVE-2019-11170

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel Baseboard Management Controller firmware (affected versions not specified)
Description The issue is related to an authentication bypass in the Intel Baseboard Management Controller firmware, which may allow an unauthenticated user to potentially enable information disclosure, escalation of privilege, and/or denial of service via local access. The vulnerability is associated with deficiencies in the authentication procedure, which can be exploited by an attacker to gain elevated privileges, cause a denial of service, or obtain unauthorized access to protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2019-04883
CVE-2019-11170

Affected Products

Intel Baseboard Management Controller