CVE-2019-0098

MEDIUM

Intel(R) CSME <12.0.35, Intel(R) TXE <3.1.65, 4.0.15 - Privilege Es...

Title source: llm
STIX 2.1

Description

Logic bug vulnerability in subsystem for Intel(R) CSME before version 12.0.35, Intel(R) TXE before 3.1.65, 4.0.15 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
https://support.f5.com/csp/article/K10522033

Scores

CVSS v3 6.8
EPSS 0.0006
EPSS Percentile 18.1%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (2)
intel/converged_security_management_engine_firmware 11.0 - 11.8.65
intel/trusted_execution_engine_firmware 3.0 - 3.1.65
Published May 17, 2019
Tracked Since Feb 18, 2026