5.9

CVE-2018-3616

Bleichenbacher-style side channel vulnerability in TLS implementation in Intel Active Management Technology before 12.0.5 may allow an unauthenticated user to potentially obtain the TLS session key via the network.

Data is provided by the National Vulnerability Database (NVD)
IntelManageability Engine Firmware Version >= 9.0.0.0 < 11.0
SiemensSimatic Field Pg M5 Firmware Version < 22.01.06
   SiemensSimatic Field Pg M5 Version-
SiemensSimatic Ipc427e Firmware Version < 21.01.09
   SiemensSimatic Ipc427e Version-
SiemensSimatic Ipc477e Firmware Version < 21.01.09
   SiemensSimatic Ipc477e Version-
SiemensSimatic Ipc547e Firmware Version < r1.30.0
   SiemensSimatic Pc547e Version-
SiemensSimatic Pc547g Firmware Version < r1.23.0
   SiemensSimatic Ipc547g Version-
SiemensSimatic Ipc627d Firmware Version < 19.02.11
   SiemensSimatic Ipc627d Version-
SiemensSimatic Ipc647d Firmware Version < 19.01.14
   SiemensSimatic Ipc647d Version-
SiemensSimatic Ipc677d Firmware Version < 19.02.11
   SiemensSimatic Ipc677d Version-
SiemensSimatic Ipc827d Firmware Version < 19.02.11
   SiemensSimatic Ipc827d Version-
SiemensSimatic Ipc847d Firmware Version < 19.01.14
   SiemensSimatic Ipc847d Version-
SiemensSimatic Itp1000 Firmware Version < 23.01.04
   SiemensSimatic Itp1000 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.55% 0.806
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.9 2.2 3.6
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N