VDB
CVE-2017-5711
CVE-2017-5711
PUBLISHED
CVSS 7.800000190734863 HIGH
Multiple buffer overflows in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code with AMT execution privilege.
EPSS 0.14% · 33.6th percentile
Risk Scores
CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.14%
33.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| asus | b250-s_firmware | |
| asus | rog_strix_z370-h_gaming_firmware | |
| asus | h110i-plus_firmware | |
| asus | prime_h270-plus_firmware | |
| asus | prime_z270-p_firmware | |
| asus | rog_maximus_ix_hero_firmware | |
| asus | h170i-pro_firmware | |
| asus | ex-h110m-v_firmware | |
| asus | tuf_z370-pro_gaming_firmware | |
| asus | rog_strix_z270h_gaming\/k1_firmware | |
| asus | prime_z370-a_firmware | |
| asus | ex-b150m-v_firmware | |
| asus | h170-plus_d3_firmware | |
| asus | prime_b250m-d_firmware | |
| siemens | simatic_ipc427e_firmware | 0 |
| asus | z170-e_firmware | |
| asus | pio-b150m_firmware | |
| asus | h170_pro_gaming_firmware | |
| asus | z170m-plus_firmware | |
| asus | b150m-plus_firmware |
…and 179 more
Timeline
- Nov 20, 2017 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 22, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 25, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 27, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 2, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Nov 5, 2022 EPSS Score
- Jan 7, 2023 EPSS Score
References
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00086&languageid=en-fr advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-470231.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-168644.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-892715.pdf advisory
- https://security.netapp.com/advisory/ntap-20171120-0001/ url
- 1039852 vdb
- 101918 vdb
- https://www.asus.com/News/wzeltG5CjYaIwGJ0 url
- https://nvd.nist.gov/vuln/detail/CVE-2017-5711 advisory
- https://security.netapp.com/advisory/ntap-20171120-0001 url