CVE-2018-12198

Severity
6.0MEDIUM
EPSS
0.1%
top 67.88%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 14
Latest updateMay 14

Description

Insufficient input validation in Intel(R) Server Platform Services HECI subsystem before version SPS_E5_04.00.04.393.0 may allow privileged user to potentially cause a denial of service via local access.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:HExploitability: 1.5 | Impact: 4.0

Affected Packages1 packages

NVDintel/server_platform_services_firmware< sps_e5_04.00.04.393.0

🔴Vulnerability Details

2
GHSA
GHSA-pjvg-8r5p-9gwv: Insufficient input validation in Intel(R) Server Platform Services HECI subsystem before version SPS_E5_042022-05-14
CVEList
CVE-2018-12198: Insufficient input validation in Intel(R) Server Platform Services HECI subsystem before version SPS_E5_042019-03-14