CVE-2018-3612
Intel NUC kits with insufficient input validation in system firmware, potentially allows a local attacker to elevate privileges to System Management Mode (SMM).
Published:May 10, 2018
Last Modified:Nov 21, 2024
EPS:May 10, 2018
EPSS Score:0.00039
CVSS Score:7.8
Affected Products
Vendor
Product
Action
Vendor
Intel
Product
Ayaplcel.86a
Intel
Ayaplcel.86a
Vendor
Intel
Product
Bios
Intel
Bios
Vendor
Intel
Product
Bnkbl357.86a
Intel
Bnkbl357.86a
Vendor
Intel
Product
Ccsklm30.86a
Intel
Ccsklm30.86a
Vendor
Intel
Product
Ccsklm5v.86a
Intel
Ccsklm5v.86a
Vendor
Intel
Product
Dnkbli30.86a
Intel
Dnkbli30.86a
Vendor
Intel
Product
Dnkbli5v.86a
Intel
Dnkbli5v.86a
Vendor
Intel
Product
Dnkbli7v.86a
Intel
Dnkbli7v.86a
Vendor
Intel
Product
Fybyt10h.86a
Intel
Fybyt10h.86a
Vendor
Intel
Product
Gkaplcpx.86a
Intel
Gkaplcpx.86a
Vendor
Intel
Product
Kyskli70.86a
Intel
Kyskli70.86a
Vendor
Intel
Product
Mkkbli5v.86a
Intel
Mkkbli5v.86a
Vendor
Intel
Product
Mkkbly35.86a
Intel
Mkkbly35.86a
Vendor
Intel
Product
Mybdwi30.86a
Intel
Mybdwi30.86a
Vendor
Intel
Product
Mybdwi5v.86a
Intel
Mybdwi5v.86a
Vendor
Intel
Product
Rybdwi35.86a
Intel
Rybdwi35.86a
Vendor
Intel
Product
Syskli35.86a
Intel
Syskli35.86a
Vendor
Intel
Product
Tybyt10h.86a
Intel
Tybyt10h.86a
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
