Intel Active Management Technology (AMT) detection

info Nessus Plugin ID 102992
New! Plugin Severity Now Using CVSS v3

The calculated severity for Plugins has been updated to use CVSS v3 by default. Plugins that do not have a CVSS v3 score will fall back to CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Synopsis

A firmware based remote management tool is present and enabled on the remote Windows host.

Description

The Intel Management Engine on the remote host has Active Management Technology (AMT) enabled.
Intel AMT enables remote discovery and management of Intel based assets even when the host operating system is inactive.

Note that due to the low-level implementation of Intel ME, Nessus may not be able to identify its version on the remote host at this time.

See Also

http://www.nessus.org/u?fbc250d9

Plugin Details

Severity: Info

ID: 102992

File Name: wmi_intel_amt_detect.nbin

Version: 1.107

Type: local

Agent: windows

Family: Windows

Published: 9/7/2017

Updated: 11/12/2021

Dependencies: wmi_available.nbin

Asset Inventory: true

Hardware Inventory: true

OS Identification: true

Vulnerability Information

CPE: cpe:/h:intel:active_management_technology, cpe:/o:intel:active_management_technology_firmware

Required KB Items: SMB/WMI/Available

Reference Information

IAVT: 0001-T-0637