CVE-2018-12172

EUVD-2018-4150
Improper password hashing in firmware in Intel Server Board (S7200AP,S7200APR) and Intel Compute Module (HNS7200AP, HNS7200AP) may allow a privileged user to potentially disclose firmware passwords via local access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 18%
Affected Products (NVD)
VendorProductVersion
intels7200ap_firmware
r01.03.0018
intelhns7200ap_firmware
r01.03.0018
intels7200apr_firmware
r01.03.0018
intelhns7200apr_firmware
r01.03.0018
𝑥
= Vulnerable software versions