CVE-2020-0596

HIGH

Intel AMT and ISM < 11.8.77 - Unauthenticated Information Disclosure via DHCPv6 Input Validation

Title source: llm
STIX 2.1

Description

Improper input validation in DHCPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.

References (4)

Core 4

Scores

CVSS v3 7.5
EPSS 0.0126
EPSS Percentile 79.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-20
Status published
Products (2)
intel/active_management_technology_firmware 11.0 - 11.8.77
intel/service_manager 11.0 - 11.8.77
Published Jun 15, 2020
Tracked Since Feb 18, 2026