CVE-2020-8758

Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39 may allow an unauthenticated user to potentially enable escalation of privilege via network access. On un-provisioned systems, an authenticated user may potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:intel:standard_manageability:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:standard_manageability:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:standard_manageability:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:standard_manageability:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:standard_manageability:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:netapp:steelstore_cloud_integrated_storage:-:*:*:*:*:*:*:*

History

22 May 2023, 15:31

Type Values Removed Values Added
First Time Intel active Management Technology Firmware
CWE CWE-119 NVD-CWE-noinfo
CPE cpe:2.3:a:intel:active_management_technology:*:*:*:*:*:*:*:* cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*

Information

Published : 2020-09-10 15:16

Updated : 2023-12-10 13:27


NVD link : CVE-2020-8758

Mitre link : CVE-2020-8758

CVE.ORG link : CVE-2020-8758


JSON object : View

Products Affected

intel

  • active_management_technology_firmware
  • standard_manageability

netapp

  • steelstore_cloud_integrated_storage