Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2022-05-12 CVE-2021-0159 Improper Input Validation vulnerability in Intel products
Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2022-05-12 CVE-2021-0188 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Return of pointer value outside of expected range in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-119
7.8
2022-05-12 CVE-2021-0189 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Use of out-of-range pointer offset in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-119
7.8
2022-05-12 CVE-2021-0190 Improper Handling of Exceptional Conditions vulnerability in Intel products
Uncaught exception in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-755
7.8
2022-05-12 CVE-2021-0194 Unspecified vulnerability in Intel In-Band Manageability
Improper access control in the Intel(R) In-Band Manageability software before version 2.13.0 may allow a privileged user to potentially enable escalation of privilege via network access.
network
low complexity
intel
7.2
2022-05-12 CVE-2021-26258 Unspecified vulnerability in Intel Killer Control Center
Improper access control for the Intel(R) Killer(TM) Control Center software before version 2.4.3337.0 may allow an authorized user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2022-05-12 CVE-2021-33122 Unspecified vulnerability in Intel products
Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel
7.8
2022-05-12 CVE-2021-33123 Unspecified vulnerability in Intel products
Improper access control in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel
7.8
2022-05-12 CVE-2022-21128 Unspecified vulnerability in Intel Advisor
Insufficient control flow management in the Intel(R) Advisor software before version 7.6.0.37 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2022-05-12 CVE-2022-22139 Uncontrolled Search Path Element vulnerability in Intel Extreme Tuning Utility 6.4.1.21/6.5.1.360/6.5.3.25
Uncontrolled search path in the Intel(R) XTU software before version 7.3.0.33 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.3