Vulnerability Details CVE-2022-36348
Active debug code in some Intel (R) SPS firmware before version SPS_E5_04.04.04.300.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.9%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2022-36348
-
cpe:2.3:a:intel:server_platform_services:e3_05.01.04.200
-
cpe:2.3:a:intel:server_platform_services:e5_04.01.04.400
-
cpe:2.3:a:intel:server_platform_services:sps_e3_04.01.04.054.0
-
cpe:2.3:a:intel:server_platform_services:sps_e3_04.01.04.109.0
-
cpe:2.3:a:intel:server_platform_services:sps_e3_04.01.04.200
-
cpe:2.3:a:intel:server_platform_services:sps_e3_04.08.04.070.0
-
cpe:2.3:a:intel:server_platform_services:sps_e3_05.01.04.300.0
-
cpe:2.3:a:intel:server_platform_services:sps_e3_06.00.03.300.0
-
cpe:2.3:a:intel:server_platform_services:sps_e5_04.00.04.381.0
-
cpe:2.3:a:intel:server_platform_services:sps_e5_04.01.04.380.0
-
cpe:2.3:a:intel:server_platform_services:sps_e5_04.01.04.400
-
cpe:2.3:a:intel:server_platform_services:sps_e5_04.04.03.228.0
-
cpe:2.3:a:intel:server_platform_services:sps_e5_04.04.03.263.0
-
cpe:2.3:a:intel:server_platform_services:sps_e5_04.04.04.023.0