Vulnerabilities > Intel

DATE CVE VULNERABILITY TITLE RISK
2017-11-21 CVE-2017-5711 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Multiple buffer overflows in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code with AMT execution privilege.
local
low complexity
intel asus siemens CWE-119
7.8
2017-11-21 CVE-2017-5710 Unspecified vulnerability in Intel Trusted Execution Engine Firmware 3.0
Multiple privilege escalations in kernel in Intel Trusted Execution Engine Firmware 3.0 allows unauthorized process to access privileged content via unspecified vector.
local
low complexity
intel
7.8
2017-11-21 CVE-2017-5709 Unspecified vulnerability in Intel Server Platform Services Firmware 4.0
Multiple privilege escalations in kernel in Intel Server Platform Services Firmware 4.0 allows unauthorized process to access privileged content via unspecified vector.
local
low complexity
intel
7.8
2017-11-21 CVE-2017-5708 Unspecified vulnerability in Intel Manageability Engine Firmware
Multiple privilege escalations in kernel in Intel Manageability Engine Firmware 11.0/11.5/11.6/11.7/11.10/11.20 allow unauthorized process to access privileged content via unspecified vector.
local
low complexity
intel
7.8
2017-11-21 CVE-2017-5707 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Trusted Execution Engine Firmware 3.0
Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.8
2017-11-21 CVE-2017-5706 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Server Platform Services Firmware 4.0
Multiple buffer overflows in kernel in Intel Server Platform Services Firmware 4.0 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.8
2017-11-21 CVE-2017-5705 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Manageability Engine Firmware
Multiple buffer overflows in kernel in Intel Manageability Engine Firmware 11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.8
2017-11-16 CVE-2017-5738 Information Exposure vulnerability in Intel Unite 3.1.32.12/3.1.41.18/3.1.45.26
Escalation of privilege vulnerability in admin portal for Intel Unite App versions 3.1.32.12, 3.1.41.18 and 3.1.45.26 allows an attacker with network access to cause a denial of service and/or information disclosure.
network
low complexity
intel CWE-200
critical
9.1
2017-10-11 CVE-2017-5722 Improper Privilege Management vulnerability in Intel products
Incorrect policy enforcement in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows attackers with local or physical access to bypass enforcement of integrity protections via manipulation of firmware storage.
local
high complexity
intel CWE-269
7.5
2017-10-11 CVE-2017-5721 Improper Input Validation vulnerability in Intel products
Insufficient input validation in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to execute arbitrary code via manipulation of memory.
local
high complexity
intel CWE-20
7.5