CVE-2020-0534 PUBLISHED CVSS 7.5 HIGH

Improper input validation in the DAL subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an unauthenticated user to potentially enable denial of service via network access.

EPSS 0.92% · 75.8th percentile

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.92%
75.8th percentile

Affected Products

VendorProductVersions
n/aIntel(R) CSMESee provided reference
intelconverged_security_management_engine_firmware12.0, 13.0, 14.0

Timeline

References

Open in Interactive Console →