Vulnerabilities > Intel > Data Center Manager > 2.7

DATE CVE VULNERABILITY TITLE RISK
2023-11-14 CVE-2023-31273 Improper Privilege Management vulnerability in Intel Data Center Manager
Protection mechanism failure in some Intel DCM software before version 5.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-269
critical
9.8
2023-05-10 CVE-2022-40210 Exposure of Resource to Wrong Sphere vulnerability in Intel Data Center Manager
Exposure of data element to wrong session in the Intel DCM software before version 5.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-668
7.8
2023-05-10 CVE-2022-40685 Insufficiently Protected Credentials vulnerability in Intel Data Center Manager
Insufficiently protected credentials in the Intel(R) DCM software before version 5.0.1 may allow an authenticated user to potentially enable information disclosure via network access.
network
low complexity
intel CWE-522
6.5
2023-05-10 CVE-2022-41979 Unspecified vulnerability in Intel Data Center Manager
Protection mechanism failure in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel
8.8
2023-05-10 CVE-2022-41998 Uncontrolled Search Path Element vulnerability in Intel Data Center Manager
Uncontrolled search path in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2023-05-10 CVE-2022-43475 Insecure Storage of Sensitive Information vulnerability in Intel Data Center Manager
Insecure storage of sensitive information in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-922
7.8
2023-05-10 CVE-2022-44610 Improper Authentication vulnerability in Intel Data Center Manager
Improper authentication in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-287
8.8
2023-05-10 CVE-2022-44619 Insecure Storage of Sensitive Information vulnerability in Intel Data Center Manager
Insecure storage of sensitive information in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-922
7.8
2022-08-18 CVE-2022-23182 Unspecified vulnerability in Intel Data Center Manager
Improper access control in the Intel(R) Data Center Manager software before version 4.1 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel
8.8
2021-12-10 CVE-2021-44228 Deserialization of Untrusted Data vulnerability in multiple products
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints.
10.0