CVE-2019-11168: Intel Baseboard Management Controller Firmware
Critical severity, CVSS 9.1. EPSS: 1.3% chance of exploitation in the next 30 days.
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure and/or denial of service via network access.
Affected products
- Intel Baseboard Management Controller Firmware: before 2.18 (fixed in 2.18)
Published 2019-11-14. Last modified 2026-06-17.