Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2022-02-09 CVE-2022-21220 XXE vulnerability in Intel Quartus Prime
Improper restriction of XML external entity for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-611
7.8
2022-01-28 CVE-2022-23098 Infinite Loop vulnerability in multiple products
An issue was discovered in the DNS proxy in Connman through 1.40.
network
low complexity
intel debian CWE-835
7.5
2021-11-17 CVE-2020-8741 Incorrect Default Permissions vulnerability in Intel Thunderbolt Non-Dch Driver
Improper permissions in the installer for the Intel(R) Thunderbolt(TM) non-DCH driver, all versions, for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-0013 Improper Input Validation vulnerability in Intel Endpoint Management Assistant
Improper input validation for Intel(R) EMA before version 1.5.0 may allow an unauthenticated user to potentially enable denial of service via network access.
network
low complexity
intel CWE-20
7.5
2021-11-17 CVE-2021-0064 Incorrect Permission Assignment for Critical Resource vulnerability in Intel products
Insecure inherited permissions in the Intel(R) PROSet/Wireless WiFi software installer for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2021-11-17 CVE-2021-0065 Incorrect Default Permissions vulnerability in Intel products
Incorrect default permissions in the Intel(R) PROSet/Wireless WiFi software installer for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-11-17 CVE-2021-0071 Improper Input Validation vulnerability in Intel products
Improper input validation in firmware for some Intel(R) PROSet/Wireless WiFi in UEFI may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel CWE-20
8.8
2021-11-17 CVE-2021-0078 Improper Input Validation vulnerability in Intel products
Improper input validation in software for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi in Windows 10 may allow an unauthenticated user to potentially enable denial of service or information disclosure via adjacent access.
low complexity
intel CWE-20
8.1
2021-11-17 CVE-2021-0082 Uncontrolled Search Path Element vulnerability in Intel products
Uncontrolled search path in software installer for Intel(R) PROSet/Wireless WiFi in Windows 10 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2021-11-17 CVE-2021-0151 Unspecified vulnerability in Intel products
Improper access control in the installer for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products in Windows 10 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8