Vulnerabilities > Intel > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-12-18 CVE-2019-11107 Improper Input Validation vulnerability in Intel Active Management Technology Firmware
Insufficient input validation in the subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-20
critical
9.8
2019-11-14 CVE-2019-11171 Out-of-bounds Write vulnerability in Intel Baseboard Management Controller Firmware 2.09
Heap corruption in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure, escalation of privilege and/or denial of service via network access.
network
low complexity
intel CWE-787
critical
9.8
2019-11-14 CVE-2019-11168 Unspecified vulnerability in Intel Baseboard Management Controller Firmware 2.09
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure and/or denial of service via network access.
network
low complexity
intel
critical
9.1
2019-06-13 CVE-2019-11119 Unspecified vulnerability in Intel Raid web Console 3
Insufficient session validation in the service API for Intel(R) RWC3 version 4.186 and before may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel
critical
9.8
2019-05-17 CVE-2019-0172 Unspecified vulnerability in Intel Unite 3.1.0/3.1.1
A logic issue in Intel Unite(R) Client for Android prior to version 4.0 may allow a remote attacker to potentially enable escalation of privilege via network access.
network
low complexity
intel
critical
9.8
2019-05-17 CVE-2019-0153 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Converged Security Management Engine Firmware
Buffer overflow in subsystem in Intel(R) CSME 12.0.0 through 12.0.34 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-119
critical
9.8
2019-02-18 CVE-2019-0101 Unspecified vulnerability in Intel Unite 3.2/3.2.91.51/3.3
Authentication bypass in the Intel Unite(R) solution versions 3.2 through 3.3 may allow an unauthenticated user to potentially enable escalation of privilege to the Intel Unite(R) Solution administrative portal via network access.
network
low complexity
intel
critical
9.8
2018-09-12 CVE-2018-3679 Unspecified vulnerability in Intel Data Center Manager
Escalation of privilege in Reference UI in Intel Data Center Manager SDK 5.0 and before may allow an unauthorized remote unauthenticated user to potentially execute code via administrator privileges.
low complexity
intel
critical
9.6
2018-09-12 CVE-2018-12171 Unspecified vulnerability in Intel BMC Firmware 1.06.06
Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an unprivileged user to potentially execute arbitrary code or perform denial of service over the network.
network
low complexity
intel
critical
9.8
2018-04-03 CVE-2018-3641 Unspecified vulnerability in Intel Remote Keyboard Mobile APP
Escalation of privilege in all versions of the Intel Remote Keyboard allows a network attacker to inject keystrokes as a local user.
network
low complexity
intel
critical
9.8