CVE-2018-12171
Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an unprivileged user to potentially execute arbitrary code or perform denial of service over the network.
Published:Sep 12, 2018
Last Modified:Nov 21, 2024
EPS:Sep 12, 2018
EPSS Score:0.00743
CVSS Score:9.8
Affected Products
Vendor
Product
Action
Vendor
Intel
Product
Bbs2600bpb
Intel
Bbs2600bpb
Vendor
Intel
Product
Bbs2600bpq
Intel
Bbs2600bpq
Vendor
Intel
Product
Bbs2600bps
Intel
Bbs2600bps
Vendor
Intel
Product
Bbs2600stb
Intel
Bbs2600stb
Vendor
Intel
Product
Bbs2600stq
Intel
Bbs2600stq
Vendor
Intel
Product
Bmc Firmware
Intel
Bmc Firmware
Vendor
Intel
Product
Hns2600bpb
Intel
Hns2600bpb
Vendor
Intel
Product
Hns2600bpb24
Intel
Hns2600bpb24
Vendor
Intel
Product
Hns2600bpblc
Intel
Hns2600bpblc
Vendor
Intel
Product
Hns2600bpblc24
Intel
Hns2600bpblc24
Vendor
Intel
Product
Hns2600bpq
Intel
Hns2600bpq
Vendor
Intel
Product
Hns2600bpq24
Intel
Hns2600bpq24
Vendor
Intel
Product
Hns2600bps
Intel
Hns2600bps
Vendor
Intel
Product
Hns2600bps24
Intel
Hns2600bps24
Vendor
Intel
Product
R1208wftys
Intel
R1208wftys
Vendor
Intel
Product
R1304wf0ys
Intel
R1304wf0ys
Vendor
Intel
Product
R1304wftys
Intel
R1304wftys
Vendor
Intel
Product
R2208wf0zs
Intel
R2208wf0zs
Vendor
Intel
Product
R2208wfqzs
Intel
R2208wfqzs
Vendor
Intel
Product
R2208wftzs
Intel
R2208wftzs
Vendor
Intel
Product
R2224wfqzs
Intel
R2224wfqzs
Vendor
Intel
Product
R2224wftzs
Intel
R2224wftzs
Vendor
Intel
Product
R2308wftzs
Intel
R2308wftzs
Vendor
Intel
Product
R2312wf0np
Intel
R2312wf0np
Vendor
Intel
Product
R2312wfqzs
Intel
R2312wfqzs
Vendor
Intel
Product
R2312wftzs
Intel
R2312wftzs
Vendor
Intel
Product
S2600stb
Intel
S2600stb
Vendor
Intel
Product
S2600stq
Intel
S2600stq
Vendor
Intel
Product
S2600wfo
Intel
S2600wfo
Vendor
Intel
Product
S2600wfq
Intel
S2600wfq
Vendor
Intel
Product
S2600wft
Intel
S2600wft
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
