Improper Initialization in Intel AMT and Standard Manageability Firmware
CVE-2024-26021

4.6MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
12 February 2025

Summary

The vulnerability arises from improper initialization in the firmware of specific Intel AMT and Intel Standard Manageability products, which could allow a privileged user to access sensitive information through local access. This flaw highlights the potential risk for data exposure if exploited, emphasizing the need for users to update their firmware and reinforce security protocols.

Affected Version(s)

Intel(R) AMT and Intel(R) Standard Manageability See references

References

CVSS V4

Score:
4.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.