{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-09-22T13:13:16.858","vulnerabilities":[{"cve":{"id":"CVE-2018-12191","sourceIdentifier":"secure@intel.com","published":"2019-03-14T20:29:00.460","lastModified":"2026-06-17T01:37:17.683","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before versions 4.00.04.383 or SPS 4.01.02.174, or Intel(R) TXE before versions 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially execute arbitrary code via physical access."},{"lang":"es","value":"La comprobación de límites en el subsistema del kernel en Intel CSME, en versiones anteriores a las 11.8.60, 11.11.60, 11.22.60 o 12.0.20; o Intel(R) Server Platform Services, en versiones anteriores a la 4.00.04.383 o SPS 4.01.02.174; o Intel(R) TXE, en versiones anteriores a la 3.1.60 o 4.0.10, podría permitir que un usuario no autenticado pueda ejecutar código arbitrario mediante acceso físico."}],"affected":[{"source":"secure@intel.com","affectedData":[{"vendor":"Intel Corporation","product":"Intel(R) CSME, Server Platform Services, Trusted Execution Engine and Intel(R) Active Management Technology","versions":[{"version":"Multiple versions.","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H","baseScore":7.6,"baseSeverity":"HIGH","attackVector":"PHYSICAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":0.9,"impactScore":6.0}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"11.0","versionEndExcluding":"11.8.60","matchCriteriaId":"89FAC2D9-E921-4F45-B786-0902B310C2A3"},{"vulnerable":true,"criteria":"cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"11.10","versionEndExcluding":"11.11.60","matchCriteriaId":"EB85F0E9-95F9-452C-AAAF-0C8CCCE76C59"},{"vulnerable":true,"criteria":"cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"11.20","versionEndExcluding":"11.22.60","matchCriteriaId":"3A44D8E6-445C-475D-BB1A-75C03AEE940B"},{"vulnerable":true,"criteria":"cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"12.0.0","versionEndExcluding":"12.0.20","matchCriteriaId":"91671FB7-F021-4781-9CBD-E7B66727B747"},{"vulnerable":true,"criteria":"cpe:2.3:o:intel:server_platform_services_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.00.04.367","versionEndExcluding":"4.00.04.383","matchCriteriaId":"667510F9-E5BA-48EB-8525-F11B2148634B"},{"vulnerable":true,"criteria":"cpe:2.3:o:intel:server_platform_services_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.01.00.152.0","versionEndExcluding":"4.01.02.174","matchCriteriaId":"A04EBC6A-F5B0-428B-9094-C9BE3D2F2E42"},{"vulnerable":true,"criteria":"cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"3.0","versionEndExcluding":"3.1.60","matchCriteriaId":"3029FF22-3BD0-41A7-BBF9-E6183DF2BD31"},{"vulnerable":true,"criteria":"cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.0","versionEndExcluding":"4.0.10","matchCriteriaId":"916A348F-144A-4A81-B93F-D3422A662D09"}]}]}],"references":[{"url":"https://security.netapp.com/advisory/ntap-20190318-0001/","source":"secure@intel.com","tags":["Third Party Advisory"]},{"url":"https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03914en_us","source":"secure@intel.com","tags":["Third Party Advisory"]},{"url":"https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00185.html","source":"secure@intel.com","tags":["Vendor Advisory"]},{"url":"https://security.netapp.com/advisory/ntap-20190318-0001/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03914en_us","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]},{"url":"https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00185.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}