CVE-2022-28697

MEDIUM

Intel(R) AMT/Standard Manageability - Privilege Escalation

Title source: llm
STIX 2.1

Description

Improper access control in firmware for Intel(R) AMT and Intel(R) Standard Manageability may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Scores

CVSS v3 6.8
EPSS 0.0019
EPSS Percentile 39.9%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

Status published
Products (2)
intel/active_management_technology_firmware
intel/standard_manageability
Published Aug 18, 2022
Tracked Since Feb 18, 2026