PT-2024-8890 · Intel · Intel Csme

Published

2024-08-13

·

Updated

2024-08-14

·

CVE-2023-48361

CVSS v4.0

4.6

Medium

VectorAV:L/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions: Intel(R) CSME (affected versions not specified)
Description: The issue is related to improper initialization in the firmware of some Intel(R) CSME, which may allow a privileged user to potentially enable information disclosure via local access. This could allow an attacker to disclose protected information.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Initialization

Weakness Enumeration

Related Identifiers

BDU:2024-10557
CVE-2023-48361

Affected Products

Intel Csme