Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2018-12173

7.6 · HIGH
Published Oct 10, 2018 intel CWE-732 EPSS 0.41% (34th pctl)

Overview

CVE-2018-12173 is a high-severity vulnerability affecting intel server_board_s2600bp_firmware. It was published on October 10, 2018 and has a CVSS 3.0 base score of 7.6 (HIGH).

This vulnerability has a CVSS 3.0 base score of 7.6, rated HIGH. It requires local or adjacent network access to exploit. No authentication or special privileges are required for exploitation.

Technical Description

Insufficient access protection in firmware in Intel Server Board, Intel Server System and Intel Compute Module before firmware version 00.01.0014 may allow an unauthenticated attacker to potentially execute arbitrary code resulting in information disclosure, escalation of privilege and/or denial of service via local access.

Remediation

Check the references section for vendor advisories and patches from intel. Update server_board_s2600bp_firmware to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Affected Products

Vendor Product Versions Status
intel server_board_s2600bp_firmware >= 0, < 00.01.0014 Affected
intel server_board_s2600wf_firmware >= 0, < 00.01.0014 Affected
intel server_board_s2600st_firmware >= 0, < 00.01.0014 Affected
intel server_board_s2600bpr_firmware >= 0, < 00.01.0014 Affected
intel server_board_s2600wfr_firmware >= 0, < 00.01.0014 Affected
intel server_board_s2600str_firmware >= 0, < 00.01.0014 Affected
intel compute_module_hns2600bp_firmware >= 0, < 00.01.0014 Affected
intel compute_module_hns2600bpr_firmware >= 0, < 00.01.0014 Affected
intel server_system_r2000wf_firmware >= 0, < 00.01.0014 Affected
intel server_system_r1000wf_firmware >= 0, < 00.01.0014 Affected

Frequently Asked Questions

What is CVE-2018-12173?

CVE-2018-12173 is a high-severity vulnerability affecting intel server_board_s2600bp_firmware. It was published on October 10, 2018 and has a CVSS 3.0 base score of 7.6 (HIGH).

How severe is CVE-2018-12173?

This vulnerability has a CVSS 3.0 base score of 7.6, rated HIGH. It requires local or adjacent network access to exploit. No authentication or special privileges are required for exploitation.

How do I fix or remediate CVE-2018-12173?

Check the references section for vendor advisories and patches from intel. Update server_board_s2600bp_firmware to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2018-12173?

CyberStrike's AI-powered security agents can automatically detect CVE-2018-12173 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.