Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2018-3628

EPSS 0.40% · P61
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2018-3628

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Buffer overflow in HTTP handler in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 3.x, 4.x, 5.x, 6.x, 7.x, 8.x, 9.x, 10.x, and 11.x may allow an attacker to execute arbitrary code via the same subnet.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Intel Converged Security Manageability Engine Active Management Technology 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Intel Converged Security Manageability Engine是美国英特尔(Intel)公司的一款使用在CPU(中央处理器)中的安全管理引擎。Active Management Technology(AMT)是其中的一个主动管理组件。 Intel Converged Security Manageability Engine中的AMT的HTTP处理程序存在缓冲区溢出漏洞。攻击者可通过构造恶意的HTTP请求利用该漏洞执行任意代码。以下固件版本受到影响:Firmware 3.x版本
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Intel CorporationIntel Active Management Technology 3.x,4.x,5.x,6.x,7.x,8.x,9.x,10.x,11.x -

II. Public POCs for CVE-2018-3628

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2018-3628

登录查看更多情报信息。

Same Patch Batch · Intel Corporation · 2018-07-10 · 15 CVEs total

CVE-2017-5704多款Intel产品安全漏洞
CVE-2018-3619Intel Optane memory模块信息泄露漏洞
CVE-2018-3627Intel Converged Security Management Engine 安全漏洞
CVE-2018-3629Intel Converged Security Manageability Engine Active Management Technology 缓冲区错误漏洞
CVE-2018-3632Intel Converged Security Manageability Engine Active Management Technology 缓冲区错误漏洞
CVE-2018-3652多款Intel产品安全漏洞
CVE-2018-3667Intel Processor Diagnostic Tool 安全漏洞
CVE-2018-3668Intel Processor Diagnostic Tool 安全漏洞
CVE-2018-3682Intel Server Board、Compute Module和Server System 安全漏洞
CVE-2018-3683Intel Quartus Prime 安全漏洞
CVE-2018-3684Intel Quartus II 安全漏洞
CVE-2018-3687Intel Quartus II Programmer and Tools 安全漏洞
CVE-2018-3688Intel Quartus Prime Programmer and Tools 安全漏洞
CVE-2018-3693ARM和Intel处理器信息泄露漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2018-3628

No comments yet


Leave a comment