CVE-2019-11168: Critical severity intel baseboard management controller firmware vulnerability
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure and/or denial of service via network access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-11168?
The severity of CVE-2019-11168 is classified as high due to the potential for information disclosure and denial of service.
How do I fix CVE-2019-11168?
To mitigate CVE-2019-11168, update the Intel Baseboard Management Controller firmware to version 2.18 or later.
What impact does CVE-2019-11168 have on affected systems?
CVE-2019-11168 can allow an unauthenticated user to access sensitive information or disrupt services via network access.
Which Intel products are affected by CVE-2019-11168?
CVE-2019-11168 affects Intel Baseboard Management Controller firmware versions prior to 2.18.
Is the CVE-2019-11168 vulnerability exploitable remotely?
Yes, the CVE-2019-11168 vulnerability can be exploited remotely due to insufficient session validation.