VYPR
Unrated severityNVD Advisory· Published Aug 18, 2022· Updated May 5, 2025

CVE-2022-28697

CVE-2022-28697

Description

Improper access control in firmware for Intel(R) AMT and Intel(R) Standard Manageability may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A firmware access control flaw in Intel AMT and Standard Manageability allows an unauthenticated attacker with physical access to escalate privileges.

Vulnerability

The vulnerability is an improper access control issue in the firmware of Intel Active Management Technology (AMT) and Intel Standard Manageability. It affects versions prior to the fixed release. An attacker with physical access can exploit this to gain elevated privileges. The exact affected versions are detailed in Intel advisory INTEL-SA-00709 [1].

Exploitation

Exploitation requires physical access to the target system. An unauthenticated attacker can leverage the improper access control to bypass security mechanisms and escalate privileges. The specific steps are not publicly detailed in the provided reference.

Impact

Successful exploitation allows an attacker to escalate privileges on the affected system. This could lead to full compromise of the manageability firmware and potentially the underlying platform. The impact is limited to physical access scenarios.

Mitigation

Intel has released firmware updates to address this vulnerability. The fixed versions are available through Intel's advisory INTEL-SA-00709 [1]. Users should update their firmware as soon as possible. No workarounds were mentioned.

References
  1. INTEL-SA-00709

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.