CVE-2017-5689

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/05/2017
Last modified:
22/10/2025

Description

An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM). An unprivileged local attacker could provision manageability features gaining unprivileged network or local system privileges on Intel manageability SKUs: Intel Active Management Technology (AMT), Intel Standard Manageability (ISM), and Intel Small Business Technology (SBT).

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:hpe:proliant_ml10_gen9_server_firmware:5.0:*:*:*:*:*:*:*
cpe:2.3:h:hpe:proliant_ml10_gen9_server:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_itp1000_firmware:*:*:*:*:*:*:*:* 9.1.41.3024 (excluding)
cpe:2.3:h:siemens:simatic_itp1000:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_ipc847d_firmware:*:*:*:*:*:*:*:* 9.1.41.3024 (excluding)
cpe:2.3:h:siemens:simatic_ipc847d:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_ipc847c_firmware:*:*:*:*:*:*:*:* 6.2.61.3535 (excluding)
cpe:2.3:h:siemens:simatic_ipc847c:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_ipc827d_firmware:*:*:*:*:*:*:*:* 9.1.41.3024 (excluding)
cpe:2.3:h:siemens:simatic_ipc827d:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_ipc827c_firmware:*:*:*:*:*:*:*:* 6.2.61.3535 (excluding)
cpe:2.3:h:siemens:simatic_ipc827c:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_ipc677d_firmware:*:*:*:*:*:*:*:* 9.1.41.3024 (excluding)
cpe:2.3:h:siemens:simatic_ipc677d:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_ipc677c_firmware:*:*:*:*:*:*:*:* 6.2.61.3535 (excluding)


References to Advisories, Solutions, and Tools