9.8
CVE-2019-11119
- EPSS 2%
- Veröffentlicht 13.06.2019 16:29:01
- Zuletzt bearbeitet 21.11.2024 04:20:34
- Erkennungen
Insufficient session validation in the service API for Intel(R) RWC3 version 4.186 and before may allow an unauthenticated user to potentially enable escalation of privilege via network access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Raid Web Console 3 SwPlatform windows Version <= 4.186
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2% | 0.781 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://www.securityfocus.com/bid/108780
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00259.html