Vulnerability: Unauthorized Access to Platform Secrets via Debug Interfaces in Intel Xeon Processors

Vulnerability: Unauthorized Access to Platform Secrets via Debug Interfaces in Intel Xeon Processors

CVE-2018-3652 · HIGH Severity

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Existing UEFI setting restrictions for DCI (Direct Connect Interface) in 5th and 6th generation Intel Xeon Processor E3 Family, Intel Xeon Scalable processors, and Intel Xeon Processor D Family allows a limited physical presence attacker to potentially access platform secrets via debug interfaces.

Learn more about our Physical Security Assessment.