CVE-2022-36348: High severity intel server platform services vulnerability
Published Feb 16, 2023
·Updated
Active debug code in some Intel (R) SPS firmware before version SPSE504.04.04.300.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel Server Platform Services<sps_e5_04.04.04.300.0
Event History
Feb 16, 2023
CVE Published
via MITRE·07:59 PM
Data Sourced
via MITRE·07:59 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-36348?
CVE-2022-36348 is a vulnerability in some Intel SPS firmware that allows an authenticated user to potentially enable escalation of privilege via local access.
2
What is the severity of CVE-2022-36348?
The severity of CVE-2022-36348 is high with a CVSS score of 7.8.
3
How does CVE-2022-36348 affect Intel Server Platform Services?
CVE-2022-36348 affects Intel Server Platform Services before version SPS_E5_04.04.04.300.0.
4
How can an authenticated user exploit CVE-2022-36348?
An authenticated user can potentially enable escalation of privilege via local access to exploit CVE-2022-36348.
5
Where can I find more information about CVE-2022-36348?
You can find more information about CVE-2022-36348 in the Intel Security Advisory - INTEL-SA-00718.