Medium severity6.7NVD Advisory· Published Mar 14, 2019· Updated Jun 17, 2026
CVE-2018-12190
CVE-2018-12190
Description
Insufficient input validation in Intel(r) CSME subsystem before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel(r) TXE before 3.1.60 or 4.0.10 may allow a privileged user to potentially enable an escalation of privilege via local access.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*Range: >=11.0,<11.8.60
- cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*Range: >=3.0,<3.1.60
- Range: <11.8.60, <11.11.60, <11.22.60, <12.0.20
- Intel Corporation/Intel(R) CSME, Server Platform Services, Trusted Execution Engine and Intel(R) Active Management Technologyv5Range: Multiple versions.
Patches
Vulnerability mechanics
References
2- security.netapp.com/advisory/ntap-20190318-0001/nvdThird Party Advisory
- www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00185.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.