// For flags

CVE-2018-12172

 

Severity Score

5.5
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Improper password hashing in firmware in Intel Server Board (S7200AP,S7200APR) and Intel Compute Module (HNS7200AP, HNS7200AP) may allow a privileged user to potentially disclose firmware passwords via local access.

Hasheo de contraseñas incorrecto en el firmware en Intel Server Board (S7200AP, S7200APR) e Intel Compute Module (HNS7200AP, HNS7200AP) podría permitir que un usuario privilegiado divulgue contraseñas del firmware mediante acceso local.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2018-06-11 CVE Reserved
  • 2018-10-10 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-09-16 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Intel
Search vendor "Intel"
S7200ap Firmware
Search vendor "Intel" for product "S7200ap Firmware"
r01.03.0018
Search vendor "Intel" for product "S7200ap Firmware" and version "r01.03.0018"
-
Affected
in Intel
Search vendor "Intel"
S7200ap
Search vendor "Intel" for product "S7200ap"
--
Safe
Intel
Search vendor "Intel"
Hns7200ap Firmware
Search vendor "Intel" for product "Hns7200ap Firmware"
r01.03.0018
Search vendor "Intel" for product "Hns7200ap Firmware" and version "r01.03.0018"
-
Affected
in Intel
Search vendor "Intel"
Hns7200ap
Search vendor "Intel" for product "Hns7200ap"
--
Safe
Intel
Search vendor "Intel"
S7200apr Firmware
Search vendor "Intel" for product "S7200apr Firmware"
r01.03.0018
Search vendor "Intel" for product "S7200apr Firmware" and version "r01.03.0018"
-
Affected
in Intel
Search vendor "Intel"
S7200apr
Search vendor "Intel" for product "S7200apr"
--
Safe
Intel
Search vendor "Intel"
Hns7200apr Firmware
Search vendor "Intel" for product "Hns7200apr Firmware"
r01.03.0018
Search vendor "Intel" for product "Hns7200apr Firmware" and version "r01.03.0018"
-
Affected
in Intel
Search vendor "Intel"
Hns7200apr
Search vendor "Intel" for product "Hns7200apr"
--
Safe