Incorrect default permissions in some Intel(R) CSME installer software before version 2328.5.5.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Nov 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 04 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Intel
Intel converged Security And Manageability Engine |
|
| CPEs | cpe:2.3:a:intel:converged_security_and_manageability_engine:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Intel
Intel converged Security And Manageability Engine |
|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: intel
Published: 2024-03-14T16:45:48.448Z
Updated: 2025-11-04T16:10:04.595Z
Reserved: 2023-05-11T03:00:02.698Z
Link: CVE-2023-28389
Updated: 2025-11-04T16:10:04.595Z
Status : Awaiting Analysis
Published: 2024-03-14T17:15:50.333
Modified: 2025-11-04T17:15:36.110
Link: CVE-2023-28389
No data.