CVE-2017-5697 describes insufficient clickjacking protection in the Web User Interface of various Intel AMT firmware versions. This vulnerability could allow a remote attacker to hijack user web clicks through a specially crafted web page. Rated as MEDIUM severity with a CVSS score of 6.5, it has a network attack vector, low attack complexity, and a high impact on integrity, though no impact on confidentiality or availability. There is no evidence of active exploitation, publicly available exploit code, or significant community discussion or media coverage for this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 9.1, < 9.1.40.1000CPE matchmatch criteria | cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:* | ||
>= 9.5, < 9.5.60.1952CPE matchmatch criteria | cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:* | ||
>= 10.0, < 10.0.50.1004CPE matchmatch criteria | cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:* | ||
>= 11.0, < 11.0.0.1205CPE matchmatch criteria | cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:* | ||
>= 11.6, < 11.6.25.1129CPE matchmatch criteria | cpe:2.3:o:intel:active_management_technology_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.