Vulnerabilities > Intel > Quartus Prime > 19.4

DATE CVE VULNERABILITY TITLE RISK
2020-11-12 CVE-2020-24454 XXE vulnerability in Intel Quartus Prime
Improper Restriction of XML External Entity Reference in subsystem forIntel(R) Quartus(R) Prime Pro Edition before version 20.3 and Intel(R) Quartus(R) Prime Standard Edition before version 20.2 may allow unauthenticated user to potentially enable information disclosure via network access.
network
low complexity
intel CWE-611
7.5
2020-11-12 CVE-2020-8737 Unspecified vulnerability in Intel Quartus Prime and Stratix 10 Fpga Firmware
Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro software before version 20.1 may allow an unauthenticated user to potentially enable escalation of privilege and/or information disclosure via physical access.
low complexity
intel
6.8