Insufficient access control vulnerability in subsystem for Intel® CSME before versions 11.x, 12.0.35 Intel® TXE 3.x, 4.x, Intel® Server Platform Services 3.x, 4.x, Intel® SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
[
{
"product": "Intel(R) Converged Security & Management Engine (CSME), Intel(R) Server Platform Services (SPS)",
"vendor": "n/a",
"versions": [
{
"status": "affected",
"version": "CSME before version 12.0.35, Intel(R) SPS before version SPS_E3_05.00.04.027.0"
}
]
}
]