ID

VAR-202202-1348


CVE

CVE-2021-33107


TITLE

plural  Intel  Insufficient Protection of Credentials in Products Vulnerability

Trust: 0.8

sources: JVNDB: JVNDB-2022-005402

DESCRIPTION

Insufficiently protected credentials in USB provisioning for Intel(R) AMT SDK before version 16.0.3, Intel(R) SCS before version 12.2 and Intel(R) MEBx before versions 11.0.0.0012, 12.0.0.0011, 14.0.0.0004 and 15.0.0.0004 may allow an unauthenticated user to potentially enable information disclosure via physical access. Intel(R) AMT SDK , SCS , MEBx There are vulnerabilities in inadequate protection of credentials.Information may be obtained

Trust: 1.71

sources: NVD: CVE-2021-33107 // JVNDB: JVNDB-2022-005402 // VULHUB: VHN-393121

AFFECTED PRODUCTS

vendor:intelmodel:core i3-10100scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10310uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10310yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9960xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10700fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8565uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9980hkscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-1060g7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9 9900kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10500scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8700tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-1030g4scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10400scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9 9900kfscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8700scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10980xescope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 8600scope:eqversion: -

Trust: 1.0

vendor:intelmodel:management engine bios extensionscope:ltversion:14.0.0.0004

Trust: 1.0

vendor:intelmodel:core i9-10900scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-1000g4scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9900kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 8400tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8560uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10510yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10400fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10400hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10100escope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10700scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 9700kfscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-8950hkscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9 9980hkscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10300tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 1065g7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 8350kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 9100scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10900tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10105fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10305scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-1068ng7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10700kfscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10105scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9400tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10610uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 9350kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10850hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10305tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 9700scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10105tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9 9900scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10600kfscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-1035g4scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9400scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10900fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10110yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10900xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10700kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 8400scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9900ksscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10600scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10980hkscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10600kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10810uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9600kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 m480scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 8300tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10300hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8700kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10850kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 1068ng7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8086kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9 9900ksscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10505scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10325scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9940xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10920xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8559uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 l16g7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 1060g7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9 9900tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10510uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:setup and configuration softwarescope:ltversion:12.2

Trust: 1.0

vendor:intelmodel:core i3-1005g1scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-7980xescope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5\+8400scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7\+8700scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-1000g1scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 8100fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10610uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 9300tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10500hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10910scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10700tescope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9900kfscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 8100scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 9100tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:management engine bios extensionscope:ltversion:12.0.0.0011

Trust: 1.0

vendor:intelmodel:core i7 8550uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 8500tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10900kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10700tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9880hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9400fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 8100tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9600tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10100yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 9300scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9500scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 9700tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 10310yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9920xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9900scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-7920xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10885hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 9320scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-1065g7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10500escope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-7960xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 8600kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10210uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-1030g7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9600kfscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9500fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8500yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9900xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion: -

Trust: 1.0

vendor:intelmodel:xeonscope:eqversion: -

Trust: 1.0

vendor:intelmodel:active management technology software development kitscope:ltversion:16.0.3

Trust: 1.0

vendor:intelmodel:core i7-10870hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10100tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10900tescope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10300scope:eqversion: -

Trust: 1.0

vendor:intelmodel:management engine bios extensionscope:ltversion:15.0.0.0004

Trust: 1.0

vendor:intelmodel:management engine bios extensionscope:ltversion:11.0.0.0012

Trust: 1.0

vendor:intelmodel:core i5-1030ng7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10100fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 9350kfscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9900tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10700escope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-7940xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-1038ng7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10500tescope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 1060ng7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 9700kscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9 9880hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 8500scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9820xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10900escope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 9700fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10320scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-7900xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 10510yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5\+8500scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10110yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10940xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-1035g7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10875hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10110uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10200hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10210yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 10110yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7 8650uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-1000ng4scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9600scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 9100fscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10600tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-1060ng7scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10500tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10750hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7-10710uscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3-10100tescope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-10400tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10850hscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 10210yscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-10900kfscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 9500tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9800xscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9-9980xescope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5 8600tscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3 8300scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5-1035g1scope:eqversion: -

Trust: 1.0

vendor:インテルmodel:intel active management technology software development kitscope: - version: -

Trust: 0.8

vendor:インテルmodel:intel core i3-10100escope: - version: -

Trust: 0.8

vendor:インテルmodel:intel core i3-1000g4scope: - version: -

Trust: 0.8

vendor:インテルmodel:intel core i3-1000g1scope: - version: -

Trust: 0.8

vendor:インテルmodel:intel management engine bios extensionscope: - version: -

Trust: 0.8

vendor:インテルmodel:intel setup and configuration softwarescope: - version: -

Trust: 0.8

vendor:インテルmodel:intel core i3-1005g1scope: - version: -

Trust: 0.8

vendor:インテルmodel:intel core i3-10100fscope: - version: -

Trust: 0.8

vendor:インテルmodel:intel core i3-10100scope: - version: -

Trust: 0.8

vendor:インテルmodel:intel core i3scope: - version: -

Trust: 0.8

sources: JVNDB: JVNDB-2022-005402 // NVD: CVE-2021-33107

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2021-33107
value: MEDIUM

Trust: 1.0

NVD: CVE-2021-33107
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-202202-677
value: MEDIUM

Trust: 0.6

VULHUB: VHN-393121
value: LOW

Trust: 0.1

nvd@nist.gov: CVE-2021-33107
severity: LOW
baseScore: 2.1
vectorString: AV:L/AC:L/AU:N/C:P/I:N/A:N
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-393121
severity: LOW
baseScore: 2.1
vectorString: AV:L/AC:L/AU:N/C:P/I:N/A:N
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2021-33107
baseSeverity: MEDIUM
baseScore: 4.6
vectorString: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
attackVector: PHYSICAL
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 0.9
impactScore: 3.6
version: 3.1

Trust: 1.0

NVD: CVE-2021-33107
baseSeverity: MEDIUM
baseScore: 4.6
vectorString: CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
attackVector: PHYSICAL
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: VULHUB: VHN-393121 // JVNDB: JVNDB-2022-005402 // CNNVD: CNNVD-202202-677 // NVD: CVE-2021-33107

PROBLEMTYPE DATA

problemtype:CWE-522

Trust: 1.1

problemtype:Inadequate protection of credentials (CWE-522) [NVD evaluation ]

Trust: 0.8

sources: VULHUB: VHN-393121 // JVNDB: JVNDB-2022-005402 // NVD: CVE-2021-33107

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-202202-677

PATCH

title:INTEL-SA-00575 Intel Product Security Centerurl:https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00575.html

Trust: 0.8

title:Intel Various product security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=182456

Trust: 0.6

sources: JVNDB: JVNDB-2022-005402 // CNNVD: CNNVD-202202-677

EXTERNAL IDS

db:NVDid:CVE-2021-33107

Trust: 3.3

db:JVNid:JVNVU99045838

Trust: 0.8

db:JVNDBid:JVNDB-2022-005402

Trust: 0.8

db:CS-HELPid:SB2022020924

Trust: 0.6

db:LENOVOid:LEN-75197

Trust: 0.6

db:AUSCERTid:ESB-2022.0538

Trust: 0.6

db:CNNVDid:CNNVD-202202-677

Trust: 0.6

db:VULHUBid:VHN-393121

Trust: 0.1

sources: VULHUB: VHN-393121 // JVNDB: JVNDB-2022-005402 // CNNVD: CNNVD-202202-677 // NVD: CVE-2021-33107

REFERENCES

url:https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00601.html

Trust: 1.7

url:https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00575.html

Trust: 1.7

url:https://nvd.nist.gov/vuln/detail/cve-2021-33107

Trust: 1.4

url:https://jvn.jp/vu/jvnvu99045838/

Trust: 0.8

url:https://www.cybersecurity-help.cz/vdb/sb2022020924

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.0538

Trust: 0.6

url:https://support.lenovo.com/us/en/product_security/len-75197

Trust: 0.6

sources: VULHUB: VHN-393121 // JVNDB: JVNDB-2022-005402 // CNNVD: CNNVD-202202-677 // NVD: CVE-2021-33107

SOURCES

db:VULHUBid:VHN-393121
db:JVNDBid:JVNDB-2022-005402
db:CNNVDid:CNNVD-202202-677
db:NVDid:CVE-2021-33107

LAST UPDATE DATE

2024-08-14T13:04:53.756000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-393121date:2022-07-28T00:00:00
db:JVNDBid:JVNDB-2022-005402date:2023-05-30T06:30:00
db:CNNVDid:CNNVD-202202-677date:2022-08-10T00:00:00
db:NVDid:CVE-2021-33107date:2022-07-28T09:30:06.003

SOURCES RELEASE DATE

db:VULHUBid:VHN-393121date:2022-02-09T00:00:00
db:JVNDBid:JVNDB-2022-005402date:2023-05-30T00:00:00
db:CNNVDid:CNNVD-202202-677date:2022-02-08T00:00:00
db:NVDid:CVE-2021-33107date:2022-02-09T23:15:15.387