Vulnerabilities > Intel > Data Center Manager > 5.0.1

DATE CVE VULNERABILITY TITLE RISK
2023-11-14 CVE-2023-31273 Improper Privilege Management vulnerability in Intel Data Center Manager
Protection mechanism failure in some Intel DCM software before version 5.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-269
critical
9.8
2023-05-10 CVE-2022-41979 Unspecified vulnerability in Intel Data Center Manager
Protection mechanism failure in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel
8.8
2023-05-10 CVE-2022-41998 Uncontrolled Search Path Element vulnerability in Intel Data Center Manager
Uncontrolled search path in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2023-05-10 CVE-2022-43475 Insecure Storage of Sensitive Information vulnerability in Intel Data Center Manager
Insecure storage of sensitive information in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-922
7.8
2023-05-10 CVE-2022-44610 Improper Authentication vulnerability in Intel Data Center Manager
Improper authentication in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-287
8.8
2023-05-10 CVE-2022-44619 Insecure Storage of Sensitive Information vulnerability in Intel Data Center Manager
Insecure storage of sensitive information in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-922
7.8
2021-12-10 CVE-2021-44228 Deserialization of Untrusted Data vulnerability in multiple products
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints.
10.0