CVE-2020-0596Improper Input Validation in Intel Active Management Technology Firmware

Severity
7.5HIGHNVD
EPSS
1.3%
top 20.57%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 15
Latest updateMay 24

Description

Improper input validation in DHCPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

NVDintel/service_manager11.011.8.77+3

🔴Vulnerability Details

2
GHSA
GHSA-f6mw-r22c-24cq: Improper input validation in DHCPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 112022-05-24
CVEList
CVE-2020-0596: Improper input validation in DHCPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 112020-06-15
CVE-2020-0596 — Improper Input Validation in Intel | cvebase