Logic bug in Intel Converged Security Management Engine 11.x may allow an attacker to execute arbitrary code via local privileged access.
                
            References
                    | Link | Resource | 
|---|---|
| https://security.netapp.com/advisory/ntap-20190327-0006/ | Third Party Advisory | 
| https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00118.html | Vendor Advisory | 
| https://security.netapp.com/advisory/ntap-20190327-0006/ | Third Party Advisory | 
| https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00118.html | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
Configuration 2 (hide)
| AND | 
 
 | 
Configuration 3 (hide)
| AND | 
 
 | 
Configuration 4 (hide)
| AND | 
 
 | 
Configuration 5 (hide)
| AND | 
 
 | 
Configuration 6 (hide)
| AND | 
 
 | 
Configuration 7 (hide)
| 
 | 
History
                    21 Nov 2024, 04:05
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://security.netapp.com/advisory/ntap-20190327-0006/ - Third Party Advisory | |
| References | () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00118.html - Vendor Advisory | 
Information
                Published : 2018-07-10 21:29
Updated : 2024-11-21 04:05
NVD link : CVE-2018-3627
Mitre link : CVE-2018-3627
CVE.ORG link : CVE-2018-3627
JSON object : View
Products Affected
                intel
- xeon_e3_1225_v6
- xeon_e3_1220_v6
- xeon_e3_1270_v6
- xeon_e3_1280_v6
- xeon_e3_1220_v5
- xeon_e3_1240l_v5
- xeon_e3_1280_v5
- core_i3
- xeon_e3_1260l_v5
- xeon_w
- core_i9
- xeon_e3_1235l_v5
- core_i7
- xeon_e3_1230_v6
- xeon_e3_1285_v6
- xeon_e3_1275_v6
- converged_security_management_engine_firmware
- xeon_e3_1225_v5
- xeon_e3_1230_v5
- xeon_e3_1245_v5
- xeon_e3_1240_v6
- xeon_e3_1270_v5
- core_i5
- xeon_e3_1240_v5
- xeon_e3_1245_v6
netapp
- element_software_management_node
CWE
                