Vulnerabilities > Intel

DATE CVE VULNERABILITY TITLE RISK
2018-05-15 CVE-2018-3661 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Selview and Syscfg
Buffer overflow in Intel system Configuration utilities selview.exe and syscfg.exe before version 14 build 11 allows a local user to crash these services potentially resulting in a denial of service.
local
low complexity
intel CWE-119
5.5
2018-05-15 CVE-2018-3634 Improper Input Validation vulnerability in Intel Online Connect Access 1.9.22.0
Parameter corruption in NDIS filter driver in Intel Online Connect Access 1.9.22.0 allows an attacker to cause a denial of service via local access.
local
low complexity
intel CWE-20
5.5
2018-05-15 CVE-2018-3611 Improper Input Validation vulnerability in Intel Graphics Driver
Bounds check vulnerability in User Mode Driver in Intel Graphics Driver 15.40.x.4 and 21.20.x.x allows unprivileged user to cause a denial of service via local access.
network
low complexity
intel CWE-20
6.5
2018-05-10 CVE-2018-3649 Uncontrolled Search Path Element vulnerability in Intel products
DLL injection vulnerability in the installation executables (Autorun.exe and Setup.exe) for Intel's wireless drivers and related software in Intel Dual Band Wireless-AC, Tri-Band Wireless-AC and Wireless-AC family of products allows a local attacker to cause escalation of privilege via remote code execution.
local
low complexity
intel CWE-427
7.8
2018-05-10 CVE-2018-3612 Improper Input Validation vulnerability in Intel products
Intel NUC kits with insufficient input validation in system firmware, potentially allows a local attacker to elevate privileges to System Management Mode (SMM).
local
low complexity
intel CWE-20
7.8
2018-04-05 CVE-2018-3624 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel 2G Modem Firmware
Buffer overflow in ETWS processing module Intel XMM71xx, XMM72xx, XMM73xx, XMM74xx and Sofia 3G/R allows remote attacker to potentially execute arbitrary code via an adjacent network.
high complexity
intel CWE-119
8.3
2018-04-03 CVE-2018-3645 Unspecified vulnerability in Intel Remote Keyboard Mobile APP
Escalation of privilege in all versions of the Intel Remote Keyboard allows a local attacker to inject keystrokes into another remote keyboard session.
local
low complexity
intel
7.8
2018-04-03 CVE-2018-3641 Unspecified vulnerability in Intel Remote Keyboard Mobile APP
Escalation of privilege in all versions of the Intel Remote Keyboard allows a network attacker to inject keystrokes as a local user.
network
low complexity
intel
critical
9.8
2018-04-03 CVE-2018-3638 Unspecified vulnerability in Intel Remote Keyboard Mobile APP
Escalation of privilege in all versions of the Intel Remote Keyboard allows an authorized local attacker to execute arbitrary code as a privileged user.
local
low complexity
intel
7.8
2018-04-03 CVE-2017-5703 Improper Privilege Management vulnerability in Intel products
Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.
local
low complexity
intel CWE-269
6.0