7.6
CVE-2018-3652
- EPSS 0.15%
- Veröffentlicht 10.07.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:05:50
- Quelle secure@intel.com
- Teams Watchlist Login
- Unerledigt Login
Existing UEFI setting restrictions for DCI (Direct Connect Interface) in 5th and 6th generation Intel Xeon Processor E3 Family, Intel Xeon Scalable processors, and Intel Xeon Processor D Family allows a limited physical presence attacker to potentially access platform secrets via debug interfaces.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Xeon E3 1220 V5 Version-
Intel ≫ Xeon E3 1220 V6 Version-
Intel ≫ Xeon E3 1225 V5 Version-
Intel ≫ Xeon E3 1225 V6 Version-
Intel ≫ Xeon E3 1230 V5 Version-
Intel ≫ Xeon E3 1230 V6 Version-
Intel ≫ Xeon E3 1235l V5 Version-
Intel ≫ Xeon E3 1240 V5 Version-
Intel ≫ Xeon E3 1240 V6 Version-
Intel ≫ Xeon E3 1240l V5 Version-
Intel ≫ Xeon E3 1245 V5 Version-
Intel ≫ Xeon E3 1245 V6 Version-
Intel ≫ Xeon E3 1260l V5 Version-
Intel ≫ Xeon E3 1268l V5 Version-
Intel ≫ Xeon E3 1270 V5 Version-
Intel ≫ Xeon E3 1270 V6 Version-
Intel ≫ Xeon E3 1275 V5 Version-
Intel ≫ Xeon E3 1275 V6 Version-
Intel ≫ Xeon E3 1280 V5 Version-
Intel ≫ Xeon E3 1280 V6 Version-
Intel ≫ Xeon E3 1285 V6 Version-
Intel ≫ Xeon E3 1501l V6 Version-
Intel ≫ Xeon E3 1501m V6 Version-
Intel ≫ Xeon E3 1505l V5 Version-
Intel ≫ Xeon E3 1505l V6 Version-
Intel ≫ Xeon E3 1505m V5 Version-
Intel ≫ Xeon Bronze 3104 Version-
Intel ≫ Xeon Bronze 3106 Version-
Intel ≫ Xeon Platinum Version8153
Intel ≫ Xeon Platinum Version8156
Intel ≫ Xeon Platinum Version8158
Intel ≫ Xeon Platinum Version8160
Intel ≫ Xeon Platinum Version8160f
Intel ≫ Xeon Platinum Version8160m
Intel ≫ Xeon Platinum Version8160t
Intel ≫ Xeon Platinum Version8164
Intel ≫ Xeon Platinum Version8168
Intel ≫ Xeon Platinum Version8170
Intel ≫ Xeon Platinum Version8170m
Intel ≫ Xeon Platinum Version8176
Intel ≫ Xeon Platinum Version8176f
Intel ≫ Xeon Platinum Version8176m
Intel ≫ Xeon Platinum Version8180
Intel ≫ Xeon Platinum Version8180m
Intel ≫ Xeon Silver Version4108
Intel ≫ Xeon Silver Version4109t
Intel ≫ Xeon Silver Version4110
Intel ≫ Xeon Silver Version4112
Intel ≫ Xeon Silver Version4114
Intel ≫ Xeon Silver Version4114t
Intel ≫ Xeon Silver Version4116
Intel ≫ Xeon Silver Version4116t
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.15% | 0.314 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.6 | 0.9 | 6 |
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
|
nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.