High severity7.8NVD Advisory· Published Dec 18, 2019· Updated Jun 17, 2026
CVE-2019-11147
CVE-2019-11147
Description
Insufficient access control in hardware abstraction driver for MEInfo software for Intel(R) CSME before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0, 14.0.10; TXEInfo software for Intel(R) TXE before versions 3.1.70 and 4.0.20; INTEL-SA-00086 Detection Tool version 1.2.7.0 or before; INTEL-SA-00125 Detection Tool version 1.0.45.0 or before may allow an authenticated user to potentially enable escalation of privilege via local access.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- cpe:2.3:a:intel:intel-sa-00125_detection_tool:*:*:*:*:*:*:*:*Range: <=1.0.45.0
- cpe:2.3:a:intel:sa-00086_detection_tool:*:*:*:*:*:*:*:*Range: <=1.2.7.0
- cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*Range: >=11.0,<11.8.70
- cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*Range: >=3.0,<3.1.70
- Intel/MEInfo software for Intel(R) CSMEdescription
- Range: <=1.2.7.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.