Home/Product/intel baseboard management controller firmware
Product

intel baseboard management controller firmware

19 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-29493
< 2.86
Uncaught exception in webserver for the Integrated BMC in some Intel(R) platforms before versions 2.86, 2.09 and 2.78 may allow a
4.5MEDIUM
CVE-2022-25265
all versions
In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approximately 2003
7.8HIGH
CVE-2020-24475
< 2.48.ce3e3bd2
Improper initialization in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.4
5.5MEDIUM
CVE-2020-24474
< 2.48.ce3e3bd2
Buffer overflow in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3b
8.0HIGH
CVE-2020-24473
< 2.48.ce3e3bd2
Out of bounds write in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce
7.8HIGH
CVE-2019-11182
< 2.18
Memory corruption in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable den
7.5HIGH
CVE-2019-11181
< 2.18
Out of bound read in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable esc
7.8HIGH
CVE-2019-11180
< 2.18
Insufficient input validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentiall
7.5HIGH
CVE-2019-11179
< 2.18
Insufficient input validation in Intel(R) Baseboard Management Controller firmware may allow an authenticated user to potentially
6.5MEDIUM
CVE-2019-11178
< 2.18
Stack overflow in Intel(R) Baseboard Management Controller firmware may allow an authenticated user to potentially enable informat
8.1HIGH
CVE-2019-11177
< 2.18
Unhandled exception in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable d
7.5HIGH
CVE-2019-11175
< 2.18
Insufficient input validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentiall
7.5HIGH
CVE-2019-11174
< 2.18
Insufficient access control in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially
5.3MEDIUM
CVE-2019-11173
< 2.18
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentia
7.1HIGH
CVE-2019-11172
< 2.18
Out of bound read in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable inf
5.3MEDIUM
CVE-2019-11171
< 2.18
Heap corruption in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable infor
9.8CRITICAL
CVE-2019-11170
< 2.18
Authentication bypass in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable
7.8HIGH
CVE-2019-11168
< 2.18
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentia
9.1CRITICAL
CVE-2019-15902
all versions
A backporting error was discovered in the Linux stable/longterm kernel 4.4.x through 4.4.190, 4.9.x through 4.9.190, 4.14.x throug
5.6MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin