CVE-2017-5698
published 2017-09-05CVE-2017-5698: Intel Active Management Technology, Intel Standard Manageability, and Intel Small Business Technology firmware versions 11.0.25.3001 and 11.0.26.3000…
PriorityP416medium4.4CVSS 3.1
AVLACLPRHUINSUCNIHAN
EPSS
0.27%
18.4th percentile
Intel Active Management Technology, Intel Standard Manageability, and Intel Small Business Technology firmware versions 11.0.25.3001 and 11.0.26.3000 anti-rollback will not prevent upgrading to firmware version 11.6.x.1xxx which is vulnerable to CVE-2017-5689 and can be performed by a local user with administrative privileges.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| intel | active_management_technology_firmware | — | — |
| intel | active_management_technology_firmware | — | — |
| intel | manageability_engine_firmware | — | — |
| intel | manageability_engine_firmware | — | — |
| intel | small_business_technology_firmware | — | — |
| intel | small_business_technology_firmware | — | — |
CVSS provenance
nvdv3.14.4MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:C/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Trendmicro
Mitigating an Intel Management Engine Vulnerability
blogs_trendmicro·2017-11-22·CVSS 9.8
CVE-2017-5689 [CRITICAL] Mitigating an Intel Management Engine Vulnerability
Ausnutzung von Schwachstellen
## Mitigating an Intel Management Engine Vulnerability
Intel released a security advisory detailing several flaws in its Management Engine (ME). There is also one notable vulnerability that can pose a big risk, especially to corporate computers and networks:CVE-2017-5689, a privilege escalation flaw.
By: Vit Sembera Nov 22, 2017 Read time: ( words)
Save to Folio
Intel recently released a security advisory detailing several security flaws in its Management Engine (ME). The advisory provides critical ME, Trusted Execution Technology (TXE), and Server Platform Services (SPS) firmware updates for versions 8.X-11.X covering multiple CVE IDs, with CVSS scores between 6.7 and 8.2.
But there is also another notable vulnerability that can pose a bigger risk espec
Trendmicro
Mitigating an Intel Management Engine Vulnerability
blogs_trendmicro·2017-11-22·CVSS 9.8
CVE-2017-5689 [CRITICAL] Mitigating an Intel Management Engine Vulnerability
Exploits & Vulnerabilities
## Mitigating an Intel Management Engine Vulnerability
Intel released a security advisory detailing several flaws in its Management Engine (ME). There is also one notable vulnerability that can pose a big risk, especially to corporate computers and networks:CVE-2017-5689, a privilege escalation flaw.
By: Vit Sembera Nov 22, 2017 Read time: ( words)
Save to Folio
Intel recently released a security advisory detailing several security flaws in its Management Engine (ME). The advisory provides critical ME, Trusted Execution Technology (TXE), and Server Platform Services (SPS) firmware updates for versions 8.X-11.X covering multiple CVE IDs, with CVSS scores between 6.7 and 8.2.
But there is also another notable vulnerability that can pose a bigger risk especial
Trendmicro
Mitigating an Intel Management Engine Vulnerability
blogs_trendmicro·2017-11-22·CVSS 9.8
CVE-2017-5689 [CRITICAL] Mitigating an Intel Management Engine Vulnerability
Exploits y vulnerabilidades
## Mitigating an Intel Management Engine Vulnerability
Intel released a security advisory detailing several flaws in its Management Engine (ME). There is also one notable vulnerability that can pose a big risk, especially to corporate computers and networks:CVE-2017-5689, a privilege escalation flaw.
By: Vit Sembera Nov 22, 2017 Read time: ( words)
Save to Folio
Intel recently released a security advisory detailing several security flaws in its Management Engine (ME). The advisory provides critical ME, Trusted Execution Technology (TXE), and Server Platform Services (SPS) firmware updates for versions 8.X-11.X covering multiple CVE IDs, with CVSS scores between 6.7 and 8.2.
But there is also another notable vulnerability that can pose a bigger risk especia
Trendmicro
Mitigating an Intel Management Engine Vulnerability
blogs_trendmicro·2017-11-22·CVSS 9.8
CVE-2017-5689 [CRITICAL] Mitigating an Intel Management Engine Vulnerability
Sfruttamento vulnerabilità
## Mitigating an Intel Management Engine Vulnerability
Intel released a security advisory detailing several flaws in its Management Engine (ME). There is also one notable vulnerability that can pose a big risk, especially to corporate computers and networks:CVE-2017-5689, a privilege escalation flaw.
By: Vit Sembera Nov 22, 2017 Read time: ( words)
Save to Folio
Intel recently released a security advisory detailing several security flaws in its Management Engine (ME). The advisory provides critical ME, Trusted Execution Technology (TXE), and Server Platform Services (SPS) firmware updates for versions 8.X-11.X covering multiple CVE IDs, with CVSS scores between 6.7 and 8.2.
But there is also another notable vulnerability that can pose a bigger risk especial
Trendmicro
Mitigating an Intel Management Engine Vulnerability
blogs_trendmicro·2017-11-22·CVSS 9.8
CVE-2017-5689 [CRITICAL] Mitigating an Intel Management Engine Vulnerability
Exploits & Vulnerabilities
## Mitigating an Intel Management Engine Vulnerability
Intel released a security advisory detailing several flaws in its Management Engine (ME). There is also one notable vulnerability that can pose a big risk, especially to corporate computers and networks:CVE-2017-5689, a privilege escalation flaw.
By: Vit Sembera 2017/11/22 Read time: ( words)
Save to Folio
Intel recently released a security advisory detailing several security flaws in its Management Engine (ME). The advisory provides critical ME, Trusted Execution Technology (TXE), and Server Platform Services (SPS) firmware updates for versions 8.X-11.X covering multiple CVE IDs, with CVSS scores between 6.7 and 8.2.
But there is also another notable vulnerability that can pose a bigger risk especially
Trendmicro
Mitigating an Intel Management Engine Vulnerability
blogs_trendmicro·2017-11-22·CVSS 9.8
CVE-2017-5689 [CRITICAL] Mitigating an Intel Management Engine Vulnerability
Exploits & Vulnerabilities
# Mitigating an Intel Management Engine Vulnerability
Intel released a security advisory detailing several flaws in its Management Engine (ME). There is also one notable vulnerability that can pose a big risk, especially to corporate computers and networks:CVE-2017-5689, a privilege escalation flaw.
By: Vit Sembera
2017/11/22
Read time: ( words)
Save to Folio
Intel recently released a security advisory detailing several security flaws in its Management Engine (ME). The advisory provides critical ME, Trusted Execution Technology (TXE), and Server Platform Services (SPS) firmware updates for versions 8.X-11.X covering multiple CVE IDs, with CVSS scores between 6.7 and 8.2.
But there is also another notable vulnerability that can pose a bigger risk especially
2017-09-05
Published