Filtered by vendor Intel
Subscribe
Total
1545 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2019-0105 | 1 Intel | 1 Data Center Manager | 2024-11-21 | 4.6 MEDIUM | 7.8 HIGH |
Insufficient file permissions checking in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow authenticated user to potentially enable escalation of privilege via local access. | |||||
CVE-2019-0104 | 1 Intel | 1 Data Center Manager | 2024-11-21 | 2.1 LOW | 5.5 MEDIUM |
Insufficient file protection in uninstall routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access. | |||||
CVE-2019-0103 | 1 Intel | 1 Data Center Manager | 2024-11-21 | 2.1 LOW | 5.5 MEDIUM |
Insufficient file protection in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access. | |||||
CVE-2019-0102 | 1 Intel | 1 Data Center Manager | 2024-11-21 | 5.8 MEDIUM | 8.8 HIGH |
Insufficient session authentication in web server for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access. | |||||
CVE-2019-0101 | 1 Intel | 1 Unite | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
Authentication bypass in the Intel Unite(R) solution versions 3.2 through 3.3 may allow an unauthenticated user to potentially enable escalation of privilege to the Intel Unite(R) Solution administrative portal via network access. | |||||
CVE-2019-0099 | 1 Intel | 1 Server Platform Services Firmware | 2024-11-21 | 4.6 MEDIUM | 6.8 MEDIUM |
Insufficient access control vulnerability in subsystem in Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation of privilege via physical access. | |||||
CVE-2019-0098 | 1 Intel | 2 Converged Security Management Engine Firmware, Trusted Execution Engine Firmware | 2024-11-21 | 7.2 HIGH | 6.8 MEDIUM |
Logic bug vulnerability in subsystem for Intel(R) CSME before version 12.0.35, Intel(R) TXE before 3.1.65, 4.0.15 may allow an unauthenticated user to potentially enable escalation of privilege via physical access. | |||||
CVE-2019-0097 | 1 Intel | 1 Active Management Technology Firmware | 2024-11-21 | 4.0 MEDIUM | 4.9 MEDIUM |
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before version 12.0.35 may allow a privileged user to potentially enable denial of service via network access. | |||||
CVE-2019-0096 | 1 Intel | 1 Active Management Technology Firmware | 2024-11-21 | 5.2 MEDIUM | 8.0 HIGH |
Out of bound write vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an authenticated user to potentially enable escalation of privilege via adjacent network access. | |||||
CVE-2019-0094 | 1 Intel | 1 Active Management Technology Firmware | 2024-11-21 | 3.3 LOW | 4.3 MEDIUM |
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable denial of service via adjacent network access. | |||||
CVE-2019-0093 | 1 Intel | 1 Converged Security And Management Engine | 2024-11-21 | 2.1 LOW | 4.4 MEDIUM |
Insufficient data sanitization vulnerability in HECI subsystem for Intel(R) CSME before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow a privileged user to potentially enable information disclosure via local access. | |||||
CVE-2019-0092 | 1 Intel | 1 Active Management Technology Firmware | 2024-11-21 | 4.6 MEDIUM | 6.8 MEDIUM |
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable escalation of privilege via physical access. | |||||
CVE-2019-0091 | 1 Intel | 2 Converged Security And Management Engine, Trusted Execution Technology | 2024-11-21 | 7.2 HIGH | 7.8 HIGH |
Code injection vulnerability in installer for Intel(R) CSME before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) TXE 3.1.65, 4.0.15 may allow an unprivileged user to potentially enable escalation of privilege via local access. | |||||
CVE-2019-0090 | 1 Intel | 2 Converged Security And Management Engine, Server Platform Services | 2024-11-21 | 4.4 MEDIUM | 7.1 HIGH |
Insufficient access control vulnerability in subsystem for Intel(R) CSME before versions 11.x, 12.0.35 Intel(R) TXE 3.x, 4.x, Intel(R) Server Platform Services 3.x, 4.x, Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation of privilege via physical access. | |||||
CVE-2019-0089 | 1 Intel | 1 Server Platform Services | 2024-11-21 | 4.6 MEDIUM | 6.7 MEDIUM |
Improper data sanitization vulnerability in subsystem in Intel(R) SPS before versions SPS_E5_04.00.04.381.0, SPS_E3_04.01.04.054.0, SPS_SoC-A_04.00.04.181.0, and SPS_SoC-X_04.00.04.086.0 may allow a privileged user to potentially enable escalation of privilege via local access. | |||||
CVE-2019-0088 | 1 Intel | 1 System Support Utility | 2024-11-21 | 4.6 MEDIUM | 7.8 HIGH |
Insufficient path checking in Intel(R) System Support Utility for Windows before 2.5.0.15 may allow an authenticated user to potentially enable an escalation of privilege via local access. | |||||
CVE-2019-0086 | 1 Intel | 2 Converged Security Management Engine Firmware, Trusted Execution Engine Firmware | 2024-11-21 | 4.6 MEDIUM | 7.8 HIGH |
Insufficient access control vulnerability in Dynamic Application Loader software for Intel(R) CSME before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) TXE 3.1.65, 4.0.15 may allow an unprivileged user to potentially enable escalation of privilege via local access. | |||||
CVE-2018-9056 | 2 Arm, Intel | 209 Cortex-a, Atom C, Atom E and 206 more | 2024-11-21 | 4.7 MEDIUM | 5.6 MEDIUM |
Systems with microprocessors utilizing speculative execution may allow unauthorized disclosure of information to an attacker with local user access via a side-channel attack on the directional branch predictor, as demonstrated by a pattern history table (PHT), aka BranchScope. | |||||
CVE-2018-3705 | 1 Intel | 1 System Defense Utility | 2024-11-21 | 2.1 LOW | 5.5 MEDIUM |
Improper directory permissions in the installer for the Intel(R) System Defense Utility (all versions) may allow authenticated users to potentially enable a denial of service via local access. | |||||
CVE-2018-3704 | 1 Intel | 2 Parallel Studio, Parallel Studio Xe | 2024-11-21 | 4.6 MEDIUM | 7.8 HIGH |
Improper directory permissions in the installer for the Intel Parallel Studio before 2019 Gold may allow authenticated users to potentially enable an escalation of privilege via local access. |