CVE-2020-0539 PUBLISHED CVSS 5.5 MEDIUM

Path traversal in subsystem for Intel(R) DAL software for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32, 14.0.33 and Intel(R) TXE versions before 3.1.75, 4.0.25 may allow an unprivileged user to potentially enable denial of service via local access.

EPSS 0.05% · 16.6th percentile

Risk Scores

CVSS v3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.05%
16.6th percentile

Affected Products

VendorProductVersions
inteltrusted_execution_engine_firmware4.0, 3.0
intelconverged_security_management_engine_firmware11.10, 11.20, 13.0
n/aIntel(R) AMT and Intel(R) CSMESee provided reference

Timeline

References

Open in Interactive Console →