CVE Feed

    Dashboard / CVE / CVE-2018-12171

    CVE-2018-12171

    Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an unprivileged user to potentially execute arbitrary code or perform denial of service over the network.

    Published:Sep 12, 2018
    Last Modified:Nov 21, 2024
    EPS:Sep 12, 2018
    EPSS Score:0.00743
    CVSS Score:9.8

    Affected Products

    Vendor
    Intel
    Product
    Bbs2600bpb
    Vendor
    Intel
    Product
    Bbs2600bpq
    Vendor
    Intel
    Product
    Bbs2600bps
    Vendor
    Intel
    Product
    Bbs2600stb
    Vendor
    Intel
    Product
    Bbs2600stq
    Vendor
    Intel
    Product
    Bmc Firmware
    Vendor
    Intel
    Product
    Hns2600bpb
    Vendor
    Intel
    Product
    Hns2600bpb24
    Vendor
    Intel
    Product
    Hns2600bpblc
    Vendor
    Intel
    Product
    Hns2600bpblc24
    Vendor
    Intel
    Product
    Hns2600bpq
    Vendor
    Intel
    Product
    Hns2600bpq24
    Vendor
    Intel
    Product
    Hns2600bps
    Vendor
    Intel
    Product
    Hns2600bps24
    Vendor
    Intel
    Product
    R1208wftys
    Vendor
    Intel
    Product
    R1304wf0ys
    Vendor
    Intel
    Product
    R1304wftys
    Vendor
    Intel
    Product
    R2208wf0zs
    Vendor
    Intel
    Product
    R2208wfqzs
    Vendor
    Intel
    Product
    R2208wftzs
    Vendor
    Intel
    Product
    R2224wfqzs
    Vendor
    Intel
    Product
    R2224wftzs
    Vendor
    Intel
    Product
    R2308wftzs
    Vendor
    Intel
    Product
    R2312wf0np
    Vendor
    Intel
    Product
    R2312wfqzs
    Vendor
    Intel
    Product
    R2312wftzs
    Vendor
    Intel
    Product
    S2600stb
    Vendor
    Intel
    Product
    S2600stq
    Vendor
    Intel
    Product
    S2600wfo
    Vendor
    Intel
    Product
    S2600wfq
    Vendor
    Intel
    Product
    S2600wft

    Exploits

    No exploit reference

    Common Weakness Enumeration

    No CWE recorded yet

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High