CVE-2016-8103

medium
Published 2016-12-08 ยท Modified 2026-05-06
CVSS v3
6.7
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
6.7

Description

SMM call out in all Intel Branded NUC Kits allows a local privileged user to access the System Management Mode and take full control of the platform.

Predictions

Exploit likelihood
66%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Application impact

VendorProductVersionsFixed
intel intelcity_bios{"endIncluding":"ccsklm5v.86a"}
intel intelstk2m3w64cc-
intel intelcanyon_bios{"endIncluding":"kyskli70.86a"}
intel intelnuc6i7kyb-
intel intelcanyon_bios{"endIncluding":"pybwcel.86a"}
intel intelnuc5cpyh-
intel intelnuc5pgyh-
intel intelnuc5ppyh-
intel intelcity_biosccsklm30.86a
intel intelstk2mv64cc-
intel intelcanyon_bios{"endIncluding":"fybyt10h.86a"}
intel inteldn2820fyb-
intel intelcity_bios{"endIncluding":"ccsklm30.86a"}
intel intelswift_canyon_bios{"endIncluding":"syskli35.86a"}
intel intelnuc6i3syb-
intel intelnuc6i5syb-
intel intelcitry_bios{"endIncluding":"scchtax5.86a"}
intel intelstk1aw32sc-
intel intelcanyon_bios{"endIncluding":"mybdwi5v.86a"}
intel intelnuc5i3mybe-
intel intelcanyon_bios{"endIncluding":"mybdwi30.86a"}
intel intelcity_bios{"endIncluding":"scchtax5.86a"}
intel intelstk1a32sc-
intel intelcanyon_bios{"endIncluding":"rybdwi35.86a"}
intel intelnuc5i3ryb-
intel intelnuc5i5ryb-
intel intelnuc5i7rykh-

References

CWEs

CWE-264

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.