Vulnerability Description
Insufficiently protected credentials in the Intel(R) DCM software before version 5.0.1 may allow an authenticated user to potentially enable information disclosure via network access.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Data Center Manager | < 5.0.1 |
Related Weaknesses (CWE)
References
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00772.PatchVendor Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00772.PatchVendor Advisory
FAQ
What is CVE-2022-40685?
CVE-2022-40685 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Insufficiently protected credentials in the Intel(R) DCM software before version 5.0.1 may allow an authenticated user to potentially enable information disclosure via network access.
How severe is CVE-2022-40685?
CVE-2022-40685 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-40685?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Data Center Manager.