Vulnerabilities > Intel > Active Management Technology Firmware

DATE CVE VULNERABILITY TITLE RISK
2019-12-18 CVE-2019-11131 Unspecified vulnerability in Intel Active Management Technology Firmware
Logic issue in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel
7.5
2019-12-18 CVE-2019-11107 Improper Input Validation vulnerability in Intel Active Management Technology Firmware 12.0/12.0.35
Insufficient input validation in the subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-20
7.5
2019-12-18 CVE-2019-11100 Improper Input Validation vulnerability in Intel Active Management Technology Firmware
Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable information disclosure via physical access.
local
low complexity
intel CWE-20
2.1
2019-12-18 CVE-2019-11088 Improper Input Validation vulnerability in Intel Active Management Technology Firmware
Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel CWE-20
5.8
2019-12-18 CVE-2019-11086 Improper Input Validation vulnerability in Intel Active Management Technology Firmware 12.0/12.0.35
Insufficient input validation in subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
local
low complexity
intel CWE-20
4.6
2019-12-18 CVE-2019-0166 Improper Input Validation vulnerability in Intel Active Management Technology Firmware
Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable information disclosure via network access.
network
low complexity
intel CWE-20
5.0
2019-12-18 CVE-2019-0131 Improper Input Validation vulnerability in Intel Active Management Technology Firmware
Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable denial of service or information disclosure via adjacent access.
low complexity
intel CWE-20
4.8
2019-05-17 CVE-2019-0097 Improper Input Validation vulnerability in Intel Active Management Technology Firmware
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before version 12.0.35 may allow a privileged user to potentially enable denial of service via network access.
network
low complexity
intel CWE-20
4.9
2019-05-17 CVE-2019-0096 Out-of-bounds Write vulnerability in Intel Active Management Technology Firmware
Out of bound write vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an authenticated user to potentially enable escalation of privilege via adjacent network access.
low complexity
intel CWE-787
8.0
2019-05-17 CVE-2019-0094 Improper Input Validation vulnerability in Intel Active Management Technology Firmware
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable denial of service via adjacent network access.
low complexity
intel CWE-20
4.3