CVE漏洞中文网

0DayBank一个专门收集整理全球互联网漏洞的公开发布网站
  1. 首页
  2. CVE
  3. 正文

CVE-2017-5689 英特尔主动管理技术、英特尔小企业技术、英特尔标准可管理特权升级漏洞

2017年5月3日 1281点热度 0人点赞 0条评论

漏洞类别:Hardware

漏洞等级:

漏洞信息

A privilege escalation vulnerability resides in Intel Active Management Technology (AMT), Intel Standard Manageability (ISM), and Intel Small Business Technology, which may allow an unprivileged attacker to gain control of the manageability features provided by these products.

Affected Versions:
Intel manageability firmware versions 6.x, 7.x, 8.x 9.x, 10.x, 11.0, 11.5, and 11.6 for Intel Active Management Technology, Intel Small Business Technology, and Intel Standard Manageability.

QID Detection Logic:
Intel AMT when enabled exposes its version remotely on TCP ports 16992, 16993. This QID matches vulnerable versions based on the exposed information.

漏洞危害

An attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM).

解决方案

The vendor has released an updated firmware to fix the vulnerability. Please refer to Intel advisory INTEL-SA-00075 for details.

Patch:
Following are links for downloading patches to fix the vulnerabilities:

INTEL-SA-00075

0day

标签: 暂无
最后更新:2017年5月3日

小助手

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

您需要 登录 之后才可以评论

COPYRIGHT © 2024 www.pdr.cn CVE漏洞中文网. ALL RIGHTS RESERVED.

鲁ICP备2022031030号

联系邮箱:wpbgssyubnmsxxxkkk@proton.me