CVE-2023-40067

MEDIUM

Intel(R) CSME - Privilege Escalation

Title source: llm
STIX 2.1

Description

Unchecked return value in firmware for some Intel(R) CSME may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Scores

CVSS v3 5.7
EPSS 0.0013
EPSS Percentile 31.3%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-252
Status published
Products (1)
n/a/Intel(R) CSME See references
Published Aug 14, 2024
Tracked Since Feb 18, 2026