Vulnerability Description
Insufficient clickjacking protection in the Web User Interface of Intel AMT firmware versions before 9.1.40.1000, 9.5.60.1952, 10.0.50.1004, 11.0.0.1205, and 11.6.25.1129 potentially allowing a remote attacker to hijack users web clicks via attacker's crafted web page.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Active Management Technology Firmware | >= 9.1, < 9.1.40.1000 |
Related Weaknesses (CWE)
References
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00081&languageiVendor Advisory
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00081&languageiVendor Advisory
FAQ
What is CVE-2017-5697?
CVE-2017-5697 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Insufficient clickjacking protection in the Web User Interface of Intel AMT firmware versions before 9.1.40.1000, 9.5.60.1952, 10.0.50.1004, 11.0.0.1205, and 11.6.25.1129 potentially allowing a remote...
How severe is CVE-2017-5697?
CVE-2017-5697 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-5697?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Active Management Technology Firmware.