Vulnerability Details CVE-2018-12172
Improper password hashing in firmware in Intel Server Board (S7200AP,S7200APR) and Intel Compute Module (HNS7200AP, HNS7200AP) may allow a privileged user to potentially disclose firmware passwords via local access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 19.1%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2018-12172
-
cpe:2.3:h:intel:hns7200ap:-
-
cpe:2.3:h:intel:hns7200apr:-
-
cpe:2.3:h:intel:s7200ap:-
-
cpe:2.3:h:intel:s7200apr:-
-
cpe:2.3:o:intel:hns7200ap_firmware:r01.03.0018
-
cpe:2.3:o:intel:hns7200apr_firmware:r01.03.0018
-
cpe:2.3:o:intel:s7200ap_firmware:r01.03.0018
-
cpe:2.3:o:intel:s7200apr_firmware:r01.03.0018