Lucene search

K
cvelistIntelCVELIST:CVE-2022-29493
HistoryFeb 16, 2023 - 8:00 p.m.

CVE-2022-29493

2023-02-1620:00:22
intel
www.cve.org
4
cve-2022-29493
integrated bmc
intel platforms
denial of service

CVSS3

4.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H

AI Score

5.3

Confidence

High

EPSS

0.001

Percentile

36.8%

Uncaught exception in webserver for the Integrated BMC in some Intel® platforms before versions 2.86, 2.09 and 2.78 may allow a privileged user to potentially enable denial of service via network access.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Integrated BMC",
    "versions": [
      {
        "version": "before versions 2.86, 2.09 and 2.78",
        "status": "affected"
      }
    ],
    "defaultStatus": "unaffected"
  }
]

CVSS3

4.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H

AI Score

5.3

Confidence

High

EPSS

0.001

Percentile

36.8%

Related for CVELIST:CVE-2022-29493