Lucene search

K
nvd[email protected]NVD:CVE-2016-8103
HistoryDec 08, 2016 - 5:59 p.m.

CVE-2016-8103

2016-12-0817:59:01
CWE-264
web.nvd.nist.gov
4

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS3

6.7

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

SMM call out in all Intel Branded NUC Kits allows a local privileged user to access the System Management Mode and take full control of the platform.

Affected configurations

Nvd
Node
intelcity_biosRangeccsklm5v.86a
AND
intelstk2m3w64ccMatch-
Node
intelcanyon_biosRangekyskli70.86a
AND
intelnuc6i7kybMatch-
Node
intelcanyon_biosRangepybwcel.86a
AND
intelnuc5cpyhMatch-
OR
intelnuc5pgyhMatch-
OR
intelnuc5ppyhMatch-
Node
intelcity_biosMatchccsklm30.86a
AND
intelstk2mv64ccMatch-
Node
intelcanyon_biosRangefybyt10h.86a
AND
inteldn2820fybMatch-
Node
intelcity_biosRangeccsklm30.86a
AND
intelstk2m3w64ccMatch-
Node
intelswift_canyon_biosRangesyskli35.86a
AND
intelnuc6i3sybMatch-
OR
intelnuc6i5sybMatch-
Node
intelcitry_biosRangescchtax5.86a
AND
intelstk1aw32scMatch-
Node
intelcanyon_biosRangemybdwi5v.86a
AND
intelnuc5i3mybeMatch-
Node
intelcanyon_biosRangemybdwi30.86a
AND
intelnuc5i3mybeMatch-
Node
intelcity_biosRangescchtax5.86a
AND
intelstk1a32scMatch-
OR
intelstk1aw32scMatch-
Node
intelcanyon_biosRangerybdwi35.86a
AND
intelnuc5i3rybMatch-
OR
intelnuc5i5rybMatch-
OR
intelnuc5i7rykhMatch-
VendorProductVersionCPE
intelcity_bios*cpe:2.3:o:intel:city_bios:*:*:*:*:*:*:*:*
intelstk2m3w64cc-cpe:2.3:h:intel:stk2m3w64cc:-:*:*:*:*:*:*:*
intelcanyon_bios*cpe:2.3:o:intel:canyon_bios:*:*:*:*:*:*:*:*
intelnuc6i7kyb-cpe:2.3:h:intel:nuc6i7kyb:-:*:*:*:*:*:*:*
intelnuc5cpyh-cpe:2.3:h:intel:nuc5cpyh:-:*:*:*:*:*:*:*
intelnuc5pgyh-cpe:2.3:h:intel:nuc5pgyh:-:*:*:*:*:*:*:*
intelnuc5ppyh-cpe:2.3:h:intel:nuc5ppyh:-:*:*:*:*:*:*:*
intelcity_biosccsklm30.86acpe:2.3:o:intel:city_bios:ccsklm30.86a:*:*:*:*:*:*:*
intelstk2mv64cc-cpe:2.3:h:intel:stk2mv64cc:-:*:*:*:*:*:*:*
inteldn2820fyb-cpe:2.3:h:intel:dn2820fyb:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 201

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

CVSS3

6.7

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

AI Score

6.4

Confidence

High

EPSS

0

Percentile

5.1%

Related for NVD:CVE-2016-8103