๐Ÿ” CVE Alert

CVE-2025-20037

HIGH 7.2
CVSS Score
7.2
EPSS Score
0.0%
EPSS Percentile
0th

Time-of-check time-of-use race condition in firmware for some Intel(R) Converged Security and Management Engine may allow a privileged user to potentially enable escalation of privilege via local access.

CWE CWE-367
Vendor n/a
Product intel(r) converged security and management engine
Published Aug 12, 2025
Last Updated Feb 26, 2026
Stay Ahead of the Next One

Get instant alerts for n/a intel(r) converged security and management engine

Be the first to know when new high vulnerabilities affecting n/a intel(r) converged security and management engine are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:H/A:H
Attack Vector
Local
Attack Complexity
High
Privileges Required
High
User Interaction
None
Scope
Changed
Confidentiality
None
Integrity
High
Availability
High

Affected Versions

n/a / Intel(R) Converged Security and Management Engine
See references

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
intel.com: https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01280.html