Information Disclosure Risk in Intel DCM Software
CVE-2022-40685

6.5MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
10 May 2023

Summary

The Intel Data Center Management (DCM) software prior to version 5.0.1 is susceptible to insufficient protection of credentials, which could enable an authenticated user to disclose sensitive information through network access. This flaw emphasizes the importance of proper security measures to safeguard user credentials and prevent unauthorized information exposure.

Affected Version(s)

Intel(R) DCM software before version 5.0.1

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.