Vulnerabilities > Intel > Manageability Commander

DATE CVE VULNERABILITY TITLE RISK
2023-08-11 CVE-2022-29887 Cross-site Scripting vulnerability in Intel Manageability Commander
Cross-site Scripting (XSS) in some Intel(R) Manageability Commander software before version 2.3 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-79
critical
9.6
2023-05-10 CVE-2022-41610 Incorrect Authorization vulnerability in Intel products
Improper authorization in Intel(R) EMA Configuration Tool before version 1.0.4 and Intel(R) MC before version 2.4 software may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-863
5.5
2022-11-11 CVE-2022-26341 Insufficiently Protected Credentials vulnerability in Intel products
Insufficiently protected credentials in software in Intel(R) AMT SDK before version 16.0.4.1, Intel(R) EMA before version 1.7.1 and Intel(R) MC before version 2.3.2 may allow an authenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-522
8.8
2022-05-12 CVE-2021-0126 Improper Input Validation vulnerability in Intel Manageability Commander
Improper input validation for the Intel(R) Manageability Commander before version 2.2 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel CWE-20
5.2