CVE-2018-3682

HIGH

Intel BMC Firmware - Unauthorized SMBUS Read/Write via Improper Privilege Management

Title source: llm
STIX 2.1

Description

BMC Firmware in Intel server boards, compute modules, and systems potentially allow an attacker with administrative privileges to make unauthorized read\writes to the SMBUS.

References (1)

Core 1

Scores

CVSS v3 8.2
EPSS 0.0005
EPSS Percentile 14.8%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Details

CWE
CWE-269
Status published
Products (1)
intel/bmc_firmware
Published Jul 10, 2018
Tracked Since Feb 18, 2026