Denial of Service Vulnerability in Intel Active Management Technology and Standard Manageability
CVE-2026-20715

8.2HIGH

What is CVE-2026-20715?

An input validation vulnerability has been identified in specific firmware versions of Intel's Active Management Technology and Standard Manageability. This issue could enable a denial of service, allowing a remote attacker to disrupt the functionality of affected systems without needing prior authentication or intricate attack methods. The vulnerability emphasizes the need for robust network security measures as it opens pathways for unauthorized access at the network level, ultimately impacting system availability.

Affected Version(s)

Intel(R) Active Management Technology (Intel(R) AMT) and some Intel(R) Standard Manageability may allow a denial of service. Network adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via network access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts. See references

References

CVSS V4

Score:
8.2
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.