Vulnerability Details CVE-2020-8745
Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25 , Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 60.1%
CVSS Severity
CVSS v3 Score 6.8
CVSS v2 Score 4.6
Products affected by CVE-2020-8745
-
cpe:2.3:a:intel:converged_security_and_manageability_engine:*
-
cpe:2.3:a:intel:converged_security_and_manageability_engine:-
-
cpe:2.3:a:intel:trusted_execution_technology:3.1.0
-
cpe:2.3:a:intel:trusted_execution_technology:3.1.65
-
cpe:2.3:a:intel:trusted_execution_technology:4.0
-
cpe:2.3:a:intel:trusted_execution_technology:4.0.15
-
cpe:2.3:h:siemens:simatic_drive_controller:-
-
cpe:2.3:h:siemens:simatic_et200sp_1515sp_pc2:-
-
cpe:2.3:h:siemens:simatic_field_pg_m5:-
-
cpe:2.3:h:siemens:simatic_field_pg_m6:-
-
cpe:2.3:h:siemens:simatic_ipc127e:-
-
cpe:2.3:h:siemens:simatic_ipc427e:-
-
cpe:2.3:h:siemens:simatic_ipc477e:-
-
cpe:2.3:h:siemens:simatic_ipc477e_pro:-
-
cpe:2.3:h:siemens:simatic_ipc527g:-
-
cpe:2.3:h:siemens:simatic_ipc547g:-
-
cpe:2.3:h:siemens:simatic_ipc627e:-
-
cpe:2.3:h:siemens:simatic_ipc647e:-
-
cpe:2.3:h:siemens:simatic_ipc667e:-
-
cpe:2.3:h:siemens:simatic_ipc847e:-
-
cpe:2.3:h:siemens:simatic_itp1000:-
-
cpe:2.3:h:siemens:sinumerik_828d_hw_pu.4:-
-
cpe:2.3:h:siemens:sinumerik_840d_sl_ht_10:-
-
cpe:2.3:h:siemens:sinumerik_mc_mcu_1720:-
-
cpe:2.3:h:siemens:sinumerik_one:-
-
cpe:2.3:h:siemens:sinumerik_one_ncu_1740:-
-
cpe:2.3:h:siemens:sinumerik_one_ppu_1740:-
-
cpe:2.3:o:siemens:simatic_drive_controller_firmware:-
-
cpe:2.3:o:siemens:simatic_et200sp_1515sp_pc2_firmware:*
-
cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:-
-
cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.01
-
cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.02
-
cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.03
-
cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.04
-
cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.05
-
cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:22.01.06
-
cpe:2.3:o:siemens:simatic_field_pg_m6_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc127e_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc127e_firmware:21.01.07
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.03
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.05
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.06
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.07
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.08
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.09
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.14
-
cpe:2.3:o:siemens:simatic_ipc427e_firmware:21.01.15
-
cpe:2.3:o:siemens:simatic_ipc477e_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.03
-
cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.05
-
cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.06
-
cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.07
-
cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.08
-
cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.09
-
cpe:2.3:o:siemens:simatic_ipc477e_firmware:21.01.14
-
cpe:2.3:o:siemens:simatic_ipc527g_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc547g_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc547g_firmware:r1.23.0
-
cpe:2.3:o:siemens:simatic_ipc547g_firmware:r1.28.0
-
cpe:2.3:o:siemens:simatic_ipc627e_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc627e_firmware:25.02.06
-
cpe:2.3:o:siemens:simatic_ipc647e_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc647e_firmware:25.02.06
-
cpe:2.3:o:siemens:simatic_ipc667e_firmware:*
-
cpe:2.3:o:siemens:simatic_ipc847e_firmware:-
-
cpe:2.3:o:siemens:simatic_ipc847e_firmware:25.02.06
-
cpe:2.3:o:siemens:simatic_itp1000_firmware:-
-
cpe:2.3:o:siemens:simatic_itp1000_firmware:23.01.04
-
cpe:2.3:o:siemens:sinumerik_828d_hw_pu.4_firmware:*
-
cpe:2.3:o:siemens:sinumerik_840d_sl_ht_10_firmware:-
-
cpe:2.3:o:siemens:sinumerik_mc_mcu_1720_firmware:*
-
cpe:2.3:o:siemens:sinumerik_one_firmware:-
-
cpe:2.3:o:siemens:sinumerik_one_ncu_1740_firmware:*
-
cpe:2.3:o:siemens:sinumerik_one_ppu_1740_firmware:*