CVE-2018-3652
Existing UEFI setting restrictions for DCI (Direct Connect Interface) in 5th and 6th generation Intel Xeon Processor E3 Family, Intel Xeon Scalable processors, and Intel Xeon Processor D Family allows a limited physical presence attacker to potentially access platform secrets via debug interfaces.
Published:Jul 10, 2018
Last Modified:Nov 21, 2024
EPS:Jul 10, 2018
EPSS Score:0.00145
CVSS Score:7.6
Affected Products
Vendor
Product
Action
Vendor
Intel
Product
Atom C
Intel
Atom C
Vendor
Intel
Product
Xeon
Intel
Xeon
Vendor
Intel
Product
Xeon Bronze 3104
Intel
Xeon Bronze 3104
Vendor
Intel
Product
Xeon Bronze 3106
Intel
Xeon Bronze 3106
Vendor
Intel
Product
Xeon E3
Intel
Xeon E3
Vendor
Intel
Product
Xeon E3 1220 V5
Intel
Xeon E3 1220 V5
Vendor
Intel
Product
Xeon E3 1220 V6
Intel
Xeon E3 1220 V6
Vendor
Intel
Product
Xeon E3 1225 V5
Intel
Xeon E3 1225 V5
Vendor
Intel
Product
Xeon E3 1225 V6
Intel
Xeon E3 1225 V6
Vendor
Intel
Product
Xeon E3 1230 V5
Intel
Xeon E3 1230 V5
Vendor
Intel
Product
Xeon E3 1230 V6
Intel
Xeon E3 1230 V6
Vendor
Intel
Product
Xeon E3 1235l V5
Intel
Xeon E3 1235l V5
Vendor
Intel
Product
Xeon E3 1240 V5
Intel
Xeon E3 1240 V5
Vendor
Intel
Product
Xeon E3 1240 V6
Intel
Xeon E3 1240 V6
Vendor
Intel
Product
Xeon E3 1240l V5
Intel
Xeon E3 1240l V5
Vendor
Intel
Product
Xeon E3 1245 V5
Intel
Xeon E3 1245 V5
Vendor
Intel
Product
Xeon E3 1245 V6
Intel
Xeon E3 1245 V6
Vendor
Intel
Product
Xeon E3 1260l V5
Intel
Xeon E3 1260l V5
Vendor
Intel
Product
Xeon E3 1268l V5
Intel
Xeon E3 1268l V5
Vendor
Intel
Product
Xeon E3 1270 V5
Intel
Xeon E3 1270 V5
Vendor
Intel
Product
Xeon E3 1270 V6
Intel
Xeon E3 1270 V6
Vendor
Intel
Product
Xeon E3 1275 V5
Intel
Xeon E3 1275 V5
Vendor
Intel
Product
Xeon E3 1275 V6
Intel
Xeon E3 1275 V6
Vendor
Intel
Product
Xeon E3 1280 V5
Intel
Xeon E3 1280 V5
Vendor
Intel
Product
Xeon E3 1280 V6
Intel
Xeon E3 1280 V6
Vendor
Intel
Product
Xeon E3 1285 V6
Intel
Xeon E3 1285 V6
Vendor
Intel
Product
Xeon E3 1501l V6
Intel
Xeon E3 1501l V6
Vendor
Intel
Product
Xeon E3 1501m V6
Intel
Xeon E3 1501m V6
Vendor
Intel
Product
Xeon E3 1505l V5
Intel
Xeon E3 1505l V5
Vendor
Intel
Product
Xeon E3 1505l V6
Intel
Xeon E3 1505l V6
Vendor
Intel
Product
Xeon E3 1505m V5
Intel
Xeon E3 1505m V5
Vendor
Intel
Product
Xeon Gold
Intel
Xeon Gold
Vendor
Intel
Product
Xeon Platinum
Intel
Xeon Platinum
Vendor
Intel
Product
Xeon Silver
Intel
Xeon Silver
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
