CVE-2018-12169 is a logic error in platform sample code firmware affecting 4th through 8th Generation Intel Core Processors, including products from Intel and Lenovo. This vulnerability allows a physical attacker to potentially bypass firmware authentication. With a CVSS score of 7.6 (High), it presents a critical risk due to its physical attack vector, low complexity, and high impact on confidentiality, integrity, and availability. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4000mCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:4000m:*:*:*:*:*:*:* | ||
4005uCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:4005u:*:*:*:*:*:*:* | ||
4010uCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:4010u:*:*:*:*:*:*:* | ||
4010yCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:4010y:*:*:*:*:*:*:* | ||
4012yCPE matchmatch criteria | cpe:2.3:h:intel:core_i3:4012y:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.