An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM). An unprivileged local attacker could provision manageability features gaining unprivileged network or local system privileges on Intel manageability SKUs: Intel Active Management Technology (AMT), Intel Standard Manageability (ISM), and Intel Small Business Technology (SBT).
総合評価: CVE-2017-5689 は在野悪用が確認された重大脅威(99.2/100)。CVSS 深刻度は重大。悪用される可能性が高い(EPSS 94.19%、100 パーセンタイル) 根拠: CISA KEV に登録(追加日 2022-01-28)。Intel / Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability が対象で、弱点分類 CWE-269の悪用が確認されています。未認証でリモート管理権限を奪取されるリスクが極めて高い。 推奨対応: CISA の対応期限を過ぎています。緊急のパッチ適用を最優先に検討してください。
リスクは変動します。再評価に基づき、本ページの表示内容を更新しています。
: Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability · CISA KEV の詳細
: 2022-01-28
: 2022-07-28
: Apply updates per vendor instructions.
| EDB-ID | ソース | 種別 | 公開 | リンク |
|---|---|---|---|---|
| 43385 | exploit_db | edb | 2017-05-10 | Exploit-DB ↗ |
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS は日次で悪用されやすさの相対度合いを推定します。パーセンタイルは採点済み CVE の中での相対位置(高いほど相対的に深刻)を示します。
| # | 日付 | 旧 EPSS スコア | 新 EPSS スコア | Δ(新 − 旧) |
|---|---|---|---|---|
| 1 | 2026-03-01 | 94.12% | 94.19% | +0.07% |
| 2 | 2026-02-09 | 94.19% | 94.12% | -0.07% |
| 3 | 2026-02-08 | — | 94.19% | — |
EPSS の全履歴 (全 16 件)
この CVE の CVSS 指標。
| ベーススコア | バージョン | 深刻度 | ベクトル | 悪用しやすさ | 影響 | スコアの出典 |
|---|---|---|---|---|---|---|
| 9.8 | 3.1 | CRITICAL |
|
3.9 | 5.9 | [email protected] |
| 9.8 | 3.1 | CRITICAL |
|
3.9 | 5.9 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
| 10.0 | 2.0 | HIGH |
|
10.0 | 10.0 | [email protected] |
| ベンダー | 製品 | バージョン | 生の CPE |
|---|---|---|---|
| hpe | proliant_ml10_gen9_server_firmware | 5.0 | cpe:2.3:o:hpe:proliant_ml10_gen9_server_firmware:5.0:*:*:*:*:*:*:* |
| siemens | simatic_itp1000_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_itp1000_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc847d_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_ipc847d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc847c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_ipc847c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc827d_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_ipc827d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc827c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_ipc827c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc677d_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_ipc677d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc677c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_ipc677c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc647d_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_ipc647d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc647c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_ipc647c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc627d_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_ipc627d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc627c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_ipc627c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc547g_firmware | < 11.0.26.3000 | cpe:2.3:o:siemens:simatic_ipc547g_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc547e_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_ipc547e_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc547d_firmware | < 7.1.91.3272 | cpe:2.3:o:siemens:simatic_ipc547d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc477e_firmware | < 21.01.05 | cpe:2.3:o:siemens:simatic_ipc477e_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_ipc477d_firmware | — | cpe:2.3:o:siemens:simatic_ipc477d_firmware:-:*:*:*:-:*:*:* |
| siemens | simatic_ipc477d_firmware | — | cpe:2.3:o:siemens:simatic_ipc477d_firmware:-:*:*:*:pro:*:*:* |
| siemens | simatic_field_pg_m3_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_field_pg_m3_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_field_pg_m4_firmware | < 18.01.06 | cpe:2.3:o:siemens:simatic_field_pg_m4_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_field_pg_m5_firmware | < 22.01.03 | cpe:2.3:o:siemens:simatic_field_pg_m5_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc427e_firmware | < 21.01.04 | cpe:2.3:o:siemens:simatic_pcs_7_ipc427e_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc547d_firmware | < 7.1.91.3272 | cpe:2.3:o:siemens:simatic_pcs_7_ipc547d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc547e_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_pcs_7_ipc547e_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc547g_firmware | < 11.0.26.3000 | cpe:2.3:o:siemens:simatic_pcs_7_ipc547g_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc627c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_pcs_7_ipc627c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc677c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_pcs_7_ipc677c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc647c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_pcs_7_ipc647c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc647d_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_pcs_7_ipc647d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc847c_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:simatic_pcs_7_ipc847c_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc847d_firmware | < 9.1.41.3024 | cpe:2.3:o:siemens:simatic_pcs_7_ipc847d_firmware:*:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc427e_firmware | — | cpe:2.3:o:siemens:simatic_pcs_7_ipc427e_firmware:-:*:*:*:*:*:*:* |
| siemens | simatic_pcs_7_ipc477d_firmware | — | cpe:2.3:o:siemens:simatic_pcs_7_ipc477d_firmware:-:*:*:*:*:*:*:* |
| siemens | simatic_ipc427d_firmware | — | cpe:2.3:o:siemens:simatic_ipc427d_firmware:-:*:*:*:*:*:*:* |
| siemens | simatic_ipc427e_firmware | < 21.01.05 | cpe:2.3:o:siemens:simatic_ipc427e_firmware:*:*:*:*:*:*:*:* |
| siemens | simotion_p320-4_s_firmware | < 17.02.06.83.1 | cpe:2.3:o:siemens:simotion_p320-4_s_firmware:*:*:*:*:*:*:*:* |
| siemens | sinumerik_pcu50.5-p_firmware | < 6.2.61.3535 | cpe:2.3:o:siemens:sinumerik_pcu50.5-p_firmware:*:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 6.0 | cpe:2.3:o:intel:active_management_technology_firmware:6.0:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 6.1 | cpe:2.3:o:intel:active_management_technology_firmware:6.1:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 6.2 | cpe:2.3:o:intel:active_management_technology_firmware:6.2:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 7.0 | cpe:2.3:o:intel:active_management_technology_firmware:7.0:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 7.1 | cpe:2.3:o:intel:active_management_technology_firmware:7.1:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 8.0 | cpe:2.3:o:intel:active_management_technology_firmware:8.0:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 8.1 | cpe:2.3:o:intel:active_management_technology_firmware:8.1:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 9.0 | cpe:2.3:o:intel:active_management_technology_firmware:9.0:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 9.1 | cpe:2.3:o:intel:active_management_technology_firmware:9.1:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 9.5 | cpe:2.3:o:intel:active_management_technology_firmware:9.5:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 10.0 | cpe:2.3:o:intel:active_management_technology_firmware:10.0:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 11.0 | cpe:2.3:o:intel:active_management_technology_firmware:11.0:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 11.5 | cpe:2.3:o:intel:active_management_technology_firmware:11.5:*:*:*:*:*:*:* |
| intel | active_management_technology_firmware | 11.6 | cpe:2.3:o:intel:active_management_technology_firmware:11.6:*:*:*:*:*:*:* |