Vulnerability Intelligence Report
CVE-2018-12171
Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an unprivileged user to potentially execute arbitrary code or perform denial of service over the network.
No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:2.14%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Intel Corporation | Intel(R) Baseboard Management Controller (BMC) firmware | Versions before 1.43.91f76955. (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
2.136%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Intel Corporation · Vendor · USA |
| Reserved | 2018-06-11T00:00:00 |
| Published | 2018-09-12T19:00:00 |
| Patch Date | 2018-09-11 |
| Last Updated | 2024-09-16T20:02:17 |
Community Chatter & Buzz