Vulnerability Details CVE-2020-8745
                Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25 , Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.006
                        
                    
                    
                        
                            EPSS Ranking 70.0%
                        
                    
                 
                
                    CVSS Severity
                    
                        
                            CVSS v3 Score 6.8
                        
                    
                    
                        
                            CVSS v2 Score 4.6
                        
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2020-8745
                        
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:intel:converged_security_and_manageability_engine:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:intel:converged_security_and_manageability_engine:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:intel:trusted_execution_technology:3.1.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:intel:trusted_execution_technology:3.1.65
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:intel:trusted_execution_technology:4.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:intel:trusted_execution_technology:4.0.15
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_drive_controller:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_et200sp_1515sp_pc2:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_field_pg_m5:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_field_pg_m6:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc127e:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc427e:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc477e:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc477e_pro:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc527g:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc547g:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc627e:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc647e:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc667e:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_ipc847e:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:simatic_itp1000:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:sinumerik_828d_hw_pu.4:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:sinumerik_840d_sl_ht_10:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:sinumerik_mc_mcu_1720:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:sinumerik_one:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:sinumerik_one_ncu_1740:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:siemens:sinumerik_one_ppu_1740:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_drive_controller_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_et200sp_1515sp_pc2_firmware:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.01
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.02
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.03
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.04
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.05
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.06
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_field_pg_m6_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc127e_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc127e_firmware:21.01.07
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.03
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.05
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.06
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.07
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.08
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.09
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.14
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.15
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc477e_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.03
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.05
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.06
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.07
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.08
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.09
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.14
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc527g_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc547g_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc547g_firmware:11.0.26.3000
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc547g_firmware:r1.23.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc547g_firmware:r1.28.0
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc627e_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc627e_firmware:25.02.06
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc647e_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc647e_firmware:25.02.06
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc667e_firmware:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc847e_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_ipc847e_firmware:25.02.06
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_itp1000_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_itp1000_firmware:23.01.04
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:simatic_itp1000_firmware:9.1.41.3024
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:sinumerik_828d_hw_pu.4_firmware:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:sinumerik_840d_sl_ht_10_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:sinumerik_mc_mcu_1720_firmware:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:sinumerik_one_firmware:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:sinumerik_one_ncu_1740_firmware:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:siemens:sinumerik_one_ppu_1740_firmware:*