VYPR
Medium severity6.8NVD Advisory· Published Mar 14, 2019· Updated Jun 17, 2026

CVE-2018-12192

CVE-2018-12192

Description

Logic bug in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before version SPS_E5_04.00.04.393.0 may allow an unauthenticated user to potentially bypass MEBx authentication via physical access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*
    Range: >=11.0,<11.8.60
  • cpe:2.3:o:intel:server_platform_services_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:intel:server_platform_services_firmware:*:*:*:*:*:*:*:*range: <sps_e5_04.00.04.393.0
    • (no CPE)range: <SPS_E5_04.00.04.393.0
  • Intel/CSMEllm-fuzzy
    Range: <11.8.60, <11.11.60, <11.22.60, <12.0.20
  • Intel Corporation/Intel(R) CSME, Server Platform Services, Trusted Execution Engine and Intel(R) Active Management Technologyv5
    Range: Multiple versions.

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.