Improper Initialization in Intel AMT and Standard Manageability Firmware
CVE-2024-26021
4.6MEDIUM
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 12 February 2025
Summary
The vulnerability arises from improper initialization in the firmware of specific Intel AMT and Intel Standard Manageability products, which could allow a privileged user to access sensitive information through local access. This flaw highlights the potential risk for data exposure if exploited, emphasizing the need for users to update their firmware and reinforce security protocols.
Affected Version(s)
Intel(R) AMT and Intel(R) Standard Manageability See references
References
CVSS V4
Score:
4.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved