First published: Wed Nov 14 2018(Updated: )
Authentication bypass in the Intel RAID Web Console 3 for Windows before 4.186 may allow an unprivileged user to potentially gain administrative privileges via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel RAID Web Console 3 | <4.186 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-3696 is an authentication bypass vulnerability in the Intel RAID Web Console 3 for Windows before version 4.186.
CVE-2018-3696 has a severity rating of 5.5, which is considered medium.
CVE-2018-3696 allows an unprivileged user to potentially gain administrative privileges by bypassing the authentication mechanism via local access.
Yes, the vulnerability can be fixed by updating the Intel RAID Web Console 3 for Windows to version 4.186 or later.
More information about CVE-2018-3696 can be found at the following references: [1] http://www.securityfocus.com/bid/106028 [2] https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00196.html