CVE-2020-0533

MEDIUM

Intel CSME Firmware < 11.8.77 - Inadequate Encryption Strength via Reversible One-Way Hash

Title source: llm
STIX 2.1

Description

Reversible one-way hash in Intel(R) CSME versions before 11.8.76, 11.12.77 and 11.22.77 may allow a privileged user to potentially enable escalation of privilege, denial of service or information disclosure via local access.

References (3)

Core 3

Scores

CVSS v3 6.7
EPSS 0.0004
EPSS Percentile 12.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-326
Status published
Products (1)
intel/converged_security_management_engine_firmware 11.0 - 11.8.77
Published Jun 15, 2020
Tracked Since Feb 18, 2026