Vulnerabilities > Intel > Converged Security AND Management Engine > 14.0.0

DATE CVE VULNERABILITY TITLE RISK
2020-11-12 CVE-2020-8755 Race Condition vulnerability in Intel products
Race condition in subsystem for Intel(R) CSME versions before 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
local
intel CWE-362
4.4
2020-11-12 CVE-2020-8744 Improper Initialization vulnerability in multiple products
Improper initialization in subsystem for Intel(R) CSME versions before12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE versions before 4.0.30 Intel(R) SPS versions before E3_05.01.04.200 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel siemens CWE-665
7.8