CVE-2019-0086

Insufficient access control vulnerability in Dynamic Application Loader software for Intel(R) CSME before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) TXE 3.1.65, 4.0.15 may allow an unprivileged user to potentially enable escalation of privilege via local access.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*

Information

Published : 2019-05-17 09:29

Updated : 2020-08-24 10:37


NVD link : CVE-2019-0086

Mitre link : CVE-2019-0086


JSON object : View

CWE
CWE-732

Incorrect Permission Assignment for Critical Resource

CWE-59

Improper Link Resolution Before File Access ('Link Following')

Advertisement

dedicated server usa

Products Affected

intel

  • converged_security_management_engine_firmware
  • trusted_execution_engine_firmware