Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2022-08-18 CVE-2022-26017 Unspecified vulnerability in Intel Driver & Support Assistant
Improper access control in the Intel(R) DSA software for before version 22.2.14 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel
8.0
2022-08-18 CVE-2022-26344 Incorrect Default Permissions vulnerability in Intel Single Event API
Incorrect default permissions in the installation binaries for Intel(R) SEAPI all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2022-08-18 CVE-2022-26374 Uncontrolled Search Path Element vulnerability in Intel Single Event API
Uncontrolled search path in the installation binaries for Intel(R) SEAPI all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2022-08-18 CVE-2022-26844 Insufficiently Protected Credentials vulnerability in Intel Single Event API
Insufficiently protected credentials in the installation binaries for Intel(R) SEAPI in all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-522
7.8
2022-08-18 CVE-2022-28696 Uncontrolled Search Path Element vulnerability in Intel Distribution for Python 2017/2018/2019
Uncontrolled search path in the Intel(R) Distribution for Python before version 2022.0.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2022-08-18 CVE-2022-30296 Insufficiently Protected Credentials vulnerability in Intel Datacenter Group Event
Insufficiently protected credentials in the Intel(R) Datacenter Group Event iOS application, all versions, may allow an unauthenticated user to potentially enable information disclosure via network access.
network
low complexity
intel CWE-522
7.5
2022-08-03 CVE-2022-32293 Use After Free vulnerability in multiple products
In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query could be used to trigger a use-after-free in WISPR handling, leading to crashes or code execution.
network
high complexity
intel debian CWE-416
8.1
2022-05-12 CVE-2021-0126 Improper Input Validation vulnerability in Intel Manageability Commander
Improper input validation for the Intel(R) Manageability Commander before version 2.2 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel CWE-20
8.0
2022-05-12 CVE-2021-0153 Out-of-bounds Write vulnerability in Intel products
Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-787
7.8
2022-05-12 CVE-2021-0154 Improper Input Validation vulnerability in Intel products
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-20
7.8