Vulnerabilities > Intel

DATE CVE VULNERABILITY TITLE RISK
2023-05-10 CVE-2023-25772 Unspecified vulnerability in Intel Retail Edge Program
Improper input validation in the Intel(R) Retail Edge Mobile Android application before version 3.0.301126-RELEASE may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel
5.5
2023-05-10 CVE-2023-25776 Unspecified vulnerability in Intel products
Improper input validation in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable information disclosure via local access.
local
low complexity
intel
4.4
2023-05-10 CVE-2023-27298 Unquoted Search Path or Element vulnerability in Intel Wake UP Latency Tracer
Uncontrolled search path in the WULT software maintained by Intel(R) before version 1.0.0 (commit id 592300b) may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-428
8.8
2023-05-10 CVE-2023-27382 Incorrect Default Permissions vulnerability in Intel NUC P14E Laptop Element
Incorrect default permissions in the Audio Service for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.0.0.156 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2023-05-10 CVE-2023-27386 Unquoted Search Path or Element vulnerability in Intel Pathfinder for Risc-V
Uncontrolled search path in some Intel(R) Pathfinder for RISC-V software may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
7.3
2023-05-10 CVE-2023-28410 Out-of-bounds Write vulnerability in Intel I915 Graphics
Improper restriction of operations within the bounds of a memory buffer in some Intel(R) i915 Graphics drivers for linux before kernel version 6.2.10 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-787
7.8
2023-05-10 CVE-2023-28411 Double Free vulnerability in Intel products
Double free in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable information disclosure via local access.
local
low complexity
intel CWE-415
5.5
2023-04-12 CVE-2023-28488 Out-of-bounds Write vulnerability in Intel Connman
client.c in gdhcp in ConnMan through 1.41 could be used by network-adjacent attackers (operating a crafted DHCP server) to cause a stack-based buffer overflow and denial of service, terminating the connman process.
low complexity
intel CWE-787
6.5
2023-02-16 CVE-2021-33104 Unspecified vulnerability in Intel ONE Boot Flash Update
Improper access control in the Intel(R) OFU software before version 14.1.28 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel
5.5
2023-02-16 CVE-2022-21163 Unspecified vulnerability in Intel Crypto API Toolkit for Intel SGX
Improper access control in the Crypto API Toolkit for Intel(R) SGX before version 2.0 commit ID 91ee496 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8