Search:     Advanced search
server monitoring

Intel System Management Mode Local Privilege Escalation

Article ID: 34099
Last updated: 27 Jan, 2009
Views: 354
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

Intel System Management Mode Local Privilege Escalation

This script is Copyright (C) 2008 Tenable Network Security, Inc.

FamilyGeneral
Plugin ID34099
Bugtraq ID30823
CVE ID

Description:

Synopsis :

The remote host is vulnerable to a local privilege escalation attack.

Description :

The version of the Intel BIOS on the remote host is known to be
vulnerable to an as-yet unspecified privilege escalation attack. It
would allow a local user with administrative privileges to upgrade
administrative privileges to System Management Mode.

Solution :

Upgrade the system BIOS on the remote host.

See also :

http://www.nessus.org/u?7f2649d5

Risk factor :

Medium / CVSS Base Score : 6.2
(CVSS2#AV:L/AC:H/Au:N/C:C/I:C/A:C)
This article was:   Helpful | Not Helpful
Prev   Next
MikroTik RouterOS Detection     IRCXPro Default Admin password