Vulnerabilities > Intel > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-09-10 CVE-2020-8758 Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel netapp
critical
9.8
2019-11-14 CVE-2019-11168 Unspecified vulnerability in Intel Baseboard Management Controller Firmware 2.09
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure and/or denial of service via network access.
network
low complexity
intel
critical
9.1
2019-06-13 CVE-2019-11119 Unspecified vulnerability in Intel Raid web Console 3
Insufficient session validation in the service API for Intel(R) RWC3 version 4.186 and before may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel
critical
9.8
2017-07-26 CVE-2017-5691 Unspecified vulnerability in Intel products
Incorrect check in Intel processors from 6th and 7th Generation Intel Core Processor Families, Intel Xeon E3-1500M v5 and v6 Product Families, and Intel Xeon E3-1200 v5 and v6 Product Families allows compromised system firmware to impact SGX security via incorrect early system state.
network
intel
critical
9.3
2017-05-02 CVE-2017-5689 Privilege Escalation vulnerability in Multiple Intel Products
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM).
network
low complexity
intel
critical
10.0
2017-02-28 CVE-2017-5682 Local Privilege Escalation vulnerability in Multiple Intel Products
Intel PSET Application Install wrapper of Intel Parallel Studio XE, Intel System Studio, Intel VTune Amplifier, Intel Inspector, Intel Advisor, Intel MPI Library, Intel Trace Analyzer and Collector, Intel Integrated Performance Primitives, Cryptography for Intel Integrated Performance Primitives, Intel Math Kernel Library, Intel Data Analytics Acceleration Library, and Intel Threading Building Blocks before 2017 Update 2 allows an attacker to launch a process with escalated privileges.
network
intel
critical
9.3
2008-09-11 CVE-2008-3635 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for QuickTime, when used with Apple QuickTime before 7.5.5 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file.
network
apple intel microsoft CWE-119
critical
9.3
2007-03-07 CVE-2007-1307 Unspecified vulnerability in IBM ThinkPad Intel PRO/1000 LAN Adapter Software
Unspecified vulnerability in Lenovo Intel PRO/1000 LAN adapter before Build 135400, as used on IBM Lenovo ThinkPad systems, has unknown impact and attack vectors.
network
low complexity
intel lenovo
critical
10.0
2000-05-08 CVE-2000-0384 Unspecified vulnerability in Intel Netstructure 7110 and Netstructure 7180
NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the NetStructure's MAC address, which could allow remote attackers to gain root access.
network
low complexity
intel
critical
10.0