7.6
CVE-2018-3652
- EPSS 0.36%
- Veröffentlicht 10.07.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:05:50
- Erkennungen
Existing UEFI setting restrictions for DCI (Direct Connect Interface) in 5th and 6th generation Intel Xeon Processor E3 Family, Intel Xeon Scalable processors, and Intel Xeon Processor D Family allows a limited physical presence attacker to potentially access platform secrets via debug interfaces.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Xeon E3 1220 V5 Version -
Intel ≫ Xeon E3 1220 V6 Version -
Intel ≫ Xeon E3 1225 V5 Version -
Intel ≫ Xeon E3 1225 V6 Version -
Intel ≫ Xeon E3 1230 V5 Version -
Intel ≫ Xeon E3 1230 V6 Version -
Intel ≫ Xeon E3 1235l V5 Version -
Intel ≫ Xeon E3 1240 V5 Version -
Intel ≫ Xeon E3 1240 V6 Version -
Intel ≫ Xeon E3 1240l V5 Version -
Intel ≫ Xeon E3 1245 V5 Version -
Intel ≫ Xeon E3 1245 V6 Version -
Intel ≫ Xeon E3 1260l V5 Version -
Intel ≫ Xeon E3 1268l V5 Version -
Intel ≫ Xeon E3 1270 V5 Version -
Intel ≫ Xeon E3 1270 V6 Version -
Intel ≫ Xeon E3 1275 V5 Version -
Intel ≫ Xeon E3 1275 V6 Version -
Intel ≫ Xeon E3 1280 V5 Version -
Intel ≫ Xeon E3 1280 V6 Version -
Intel ≫ Xeon E3 1285 V6 Version -
Intel ≫ Xeon E3 1501l V6 Version -
Intel ≫ Xeon E3 1501m V6 Version -
Intel ≫ Xeon E3 1505l V5 Version -
Intel ≫ Xeon E3 1505l V6 Version -
Intel ≫ Xeon E3 1505m V5 Version -
Intel ≫ Xeon Bronze 3104 Version -
Intel ≫ Xeon Bronze 3106 Version -
Intel ≫ Xeon Platinum Version 8153
Intel ≫ Xeon Platinum Version 8156
Intel ≫ Xeon Platinum Version 8158
Intel ≫ Xeon Platinum Version 8160
Intel ≫ Xeon Platinum Version 8160f
Intel ≫ Xeon Platinum Version 8160m
Intel ≫ Xeon Platinum Version 8160t
Intel ≫ Xeon Platinum Version 8164
Intel ≫ Xeon Platinum Version 8168
Intel ≫ Xeon Platinum Version 8170
Intel ≫ Xeon Platinum Version 8170m
Intel ≫ Xeon Platinum Version 8176
Intel ≫ Xeon Platinum Version 8176f
Intel ≫ Xeon Platinum Version 8176m
Intel ≫ Xeon Platinum Version 8180
Intel ≫ Xeon Platinum Version 8180m
Intel ≫ Xeon Silver Version 4108
Intel ≫ Xeon Silver Version 4109t
Intel ≫ Xeon Silver Version 4110
Intel ≫ Xeon Silver Version 4112
Intel ≫ Xeon Silver Version 4114
Intel ≫ Xeon Silver Version 4114t
Intel ≫ Xeon Silver Version 4116
Intel ≫ Xeon Silver Version 4116t
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.36% | 0.28 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.6 | 0.9 | 6 |
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
|
| NIST | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
https://security.netapp.com/advisory/ntap-20180802-0001/
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00127.html