First published: Wed Dec 18 2019(Updated: )
Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable information disclosure via network access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Active Management Technology Firmware | >=11.0<11.8.70 | |
Intel Active Management Technology Firmware | >=11.10<11.11.70 | |
Intel Active Management Technology Firmware | >=11.20<11.22.70 | |
Intel Active Management Technology Firmware | >=12.0<12.0.45 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2019-0166.
The severity of CVE-2019-0166 is high with a CVSS score of 7.5.
Intel Active Management Technology Firmware versions 11.0 to 11.8.70, 11.10 to 11.11.70, 11.20 to 11.22.70, and 12.0 to 12.0.45 are affected by CVE-2019-0166.
CVE-2019-0166 may allow an unauthenticated user to potentially enable information disclosure via network access.
You can find more information about CVE-2019-0166 in the Intel Security Center Advisory at https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00241.html.