CVE-2022-26845

Improper authentication in firmware for Intel(R) AMT before versions 11.8.93, 11.22.93, 11.12.93, 12.0.92, 14.1.67, 15.0.42, 16.1.25 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*

History

22 May 2023, 15:27

Type Values Removed Values Added
CWE CWE-287
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00610.html - (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00610.html - Vendor Advisory
CPE cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:*

11 Nov 2022, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-11-11 16:15

Updated : 2024-02-04 22:51


NVD link : CVE-2022-26845

Mitre link : CVE-2022-26845

CVE.ORG link : CVE-2022-26845


JSON object : View

Products Affected

intel

  • active_management_technology_firmware
CWE
CWE-287

Improper Authentication