CVE-2017-5689: Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability

Published May 2, 2017
·
Updated

An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM). An unprivileged local attacker could provision manageability features gaining unprivileged network or local system privileges on Intel manageability SKUs: Intel Active Management Technology (AMT), Intel Standard Manageability (ISM), and Intel Small Business Technology (SBT).

Other sources

Intel products contain a vulnerability which can allow attackers to perform privilege escalation.

CISA

Affected Software

88 affected components
Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability
Intel Active Management Technology Firmware=6.0
Intel Active Management Technology Firmware=6.1
Intel Active Management Technology Firmware=6.2
Intel Active Management Technology Firmware=7.0
Intel Active Management Technology Firmware=7.1
Intel Active Management Technology Firmware=8.0
Intel Active Management Technology Firmware=8.1
Intel Active Management Technology Firmware=9.0
Intel Active Management Technology Firmware=9.1
Intel Active Management Technology Firmware=9.5
Intel Active Management Technology Firmware=10.0
Intel Active Management Technology Firmware=11.0
Intel Active Management Technology Firmware=11.5
Intel Active Management Technology Firmware=11.6
All of the following
HPE Proliant Ml10 Gen9 Server Firmware=5.0
HPE Proliant Ml10 Gen9 Server
All of the following
Siemens Simatic Itp1000 Firmware<9.1.41.3024
Siemens SIMATIC ITP1000
All of the following
Siemens Simatic Ipc847d Firmware<9.1.41.3024
Siemens Simatic Ipc847d
All of the following
Siemens Simatic Ipc847c Firmware<6.2.61.3535
Siemens Simatic Ipc847c
All of the following
Siemens Simatic Ipc827d Firmware<9.1.41.3024
Siemens Simatic Ipc827d
All of the following
Siemens Simatic Ipc827c Firmware<6.2.61.3535
Siemens Simatic Ipc827c
All of the following
Siemens Simatic Ipc677d Firmware<9.1.41.3024
Siemens Simatic Ipc677d
All of the following
Siemens Simatic Ipc677c Firmware<6.2.61.3535
Siemens Simatic Ipc677c
All of the following
Siemens Simatic Ipc647d Firmware<9.1.41.3024
Siemens Simatic Ipc647d
All of the following
Siemens Simatic Ipc647c Firmware<6.2.61.3535
Siemens Simatic Ipc647c
All of the following
Siemens Simatic Ipc627d Firmware<9.1.41.3024
Siemens Simatic Ipc627d
All of the following
Siemens Simatic Ipc627c Firmware<6.2.61.3535
Siemens Simatic Ipc627c
All of the following
Siemens Simatic Ipc547g Firmware<11.0.26.3000
Siemens Simatic Ipc547g
All of the following
Siemens Simatic Ipc547e Firmware<9.1.41.3024
Siemens Simatic Ipc547e
All of the following
Siemens Simatic Ipc547d Firmware<7.1.91.3272
Siemens Simatic Ipc547d
All of the following
Siemens Simatic Ipc477e Firmware<21.01.05
Siemens Simatic Ipc477e
All of the following
Any of the following
Siemens Simatic Ipc477d Firmware
Siemens Simatic Ipc477d Firmware
Siemens Simatic Ipc477d
All of the following
Siemens Simatic Field Pg M3 Firmware<6.2.61.3535
Siemens Simatic Field Pg M3
All of the following
Siemens Simatic Field Pg M4 Firmware<18.01.06
Siemens Simatic Field Pg M4
All of the following
Siemens Simatic Field Pg M5 Firmware<22.01.03
Siemens Simatic Field Pg M5
All of the following
Siemens Simatic Pcs 7 Ipc427e Firmware<21.01.04
Siemens Simatic Pcs 7 Ipc427e
All of the following
Siemens Simatic Pcs 7 Ipc547d Firmware<7.1.91.3272
Siemens Simatic Pcs 7 Ipc547d
All of the following
Siemens Simatic Pcs 7 Ipc547e Firmware<9.1.41.3024
Siemens Simatic Pcs 7 Ipc547e
All of the following
Siemens Simatic Pcs 7 Ipc547g Firmware<11.0.26.3000
Siemens Simatic Pcs 7 Ipc547g
All of the following
Siemens Simatic Pcs 7 Ipc627c Firmware<6.2.61.3535
Siemens Simatic Pcs 7 Ipc627c
All of the following
Siemens Simatic Pcs 7 Ipc677c Firmware<6.2.61.3535
Siemens Simatic Pcs 7 Ipc677c
All of the following
Siemens Simatic Pcs 7 Ipc647c Firmware<6.2.61.3535
Siemens Simatic Pcs 7 Ipc647c
All of the following
Siemens Simatic Pcs 7 Ipc647d Firmware<9.1.41.3024
Siemens Simatic Pcs 7 Ipc647d
All of the following
Siemens Simatic Pcs 7 Ipc847c Firmware<6.2.61.3535
Siemens Simatic Pcs 7 Ipc847c
All of the following
Siemens Simatic Pcs 7 Ipc847d Firmware<9.1.41.3024
Siemens Simatic Pcs 7 Ipc847d
All of the following
Siemens Simatic Pcs 7 Ipc427e Firmware
Siemens Simatic Pcs 7 Ipc427e
All of the following
Siemens Simatic Pcs 7 Ipc477d Firmware
Siemens Simatic Pcs 7 Ipc477d
All of the following
Siemens Simatic Ipc427d Firmware
Siemens Simatic Ipc427d
All of the following
Siemens Simatic Ipc427e Firmware<21.01.05
Siemens Simatic Ipc427e
All of the following
Siemens Simotion P320-4 S Firmware<17.02.06.83.1
Siemens Simotion P320-4 S
All of the following
Siemens Sinumerik Pcu50.5-p Firmware<6.2.61.3535
Siemens Sinumerik Pcu 50.5-p

Event History

May 2, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Data Sourced
via NVD·02:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Jan 28, 2022
Known Exploited
via CISA·12:00 AM
Mar 1, 58274
Event
06:01 AM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2017-5689?

CVE-2017-5689 is rated as critical due to its potential to allow an unprivileged network attacker to gain elevated privileges.

2

How do I fix CVE-2017-5689?

To remediate CVE-2017-5689, it is recommended to update to the latest firmware version of Intel Active Management Technology.

3

What products are affected by CVE-2017-5689?

CVE-2017-5689 affects several versions of Intel Active Management Technology Firmware, including versions 6.0 to 11.6.

4

What type of attacker can exploit CVE-2017-5689?

CVE-2017-5689 can be exploited by both unprivileged network and local attackers.

5

Are there any workarounds for CVE-2017-5689?

Currently, the primary mitigation for CVE-2017-5689 is to apply the available firmware updates from Intel.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203