CVE-2020-8754

HIGH

Intel AMT/ISM <11.8.80-14.0.45 - Info Disclosure

Title source: llm
STIX 2.1

Description

Out-of-bounds read in subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable information disclosure via network access.

References (2)

Core 2
Core References
Third Party Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20201113-0003/

Scores

CVSS v3 7.5
EPSS 0.0096
EPSS Percentile 76.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-125
Status published
Products (3)
intel/active_management_technology_firmware < 11.8.80
intel/standard_manageability < 11.8.80
netapp/cloud_backup
Published Nov 12, 2020
Tracked Since Feb 18, 2026