#VU6397 Privilege escalation in Intel Manageability Firmware - CVE-2017-5689
Published: May 3, 2017 / Updated: February 20, 2022
Intel Manageability Firmware
Intel
Description
The vulnerability exists due to improper authentication. A remote attacker can connect to the 16992/tcp port through UDP protocol and gain full control of Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM). A local attacker can escalate privileges and compromise Intel manageability SKUs: Intel Active Management Technology (AMT), Intel Standard Manageability (ISM), and Intel Small Business Technology (SBT).
Successful exploitation of the vulnerability may result in system compromise.