Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2018-09-12 CVE-2018-12171 Unspecified vulnerability in Intel BMC Firmware
Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an unprivileged user to potentially execute arbitrary code or perform denial of service over the network.
network
low complexity
intel
7.5
2018-09-12 CVE-2018-12168 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Computing Improvement Program
Privilege escalation in file permissions in Intel Computing Improvement Program before version 2.2.0.03942 may allow an authenticated user to potentially execute code as administrator via local access.
local
low complexity
intel CWE-732
7.2
2018-09-12 CVE-2018-12148 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Driver & Support Assistant
Privilege escalation in file permissions in Intel Driver and Support Assistant before 3.5.0.1 may allow an authenticated user to potentially execute code as administrator via local access.
local
low complexity
intel CWE-732
7.2
2018-08-01 CVE-2018-3672 Unspecified vulnerability in Intel Smart Sound Technology
Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute arbitrary code as administrator via a system calls.
local
low complexity
intel
7.2
2018-08-01 CVE-2018-3670 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Smart Sound Technology
Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute arbitrary code as administrator via a buffer overflow.
local
low complexity
intel CWE-119
7.2
2018-08-01 CVE-2018-3666 Unspecified vulnerability in Intel Smart Sound Technology
Driver module in Intel Smart Sound Technology before version 9.21.00.3541 potentially allows a local attacker to execute arbitrary code as administrator via a non-paged pool overflow.
local
low complexity
intel
7.2
2018-08-01 CVE-2018-3662 Unspecified vulnerability in Intel Saffron Memorybase
Escalation of privilege in Intel Saffron MemoryBase before version 11.4 potentially allows an authorized user of the Saffron application to execute arbitrary code as root.
low complexity
intel
7.7
2018-07-31 CVE-2017-5693 Resource Exhaustion vulnerability in Intel Puma Firmware 5.0/6.0Soc/7.0Soc
Firmware in the Intel Puma 5, 6, and 7 Series might experience resource depletion or timeout, which allows a network attacker to create a denial of service via crafted network traffic.
network
low complexity
intel CWE-400
7.8
2018-07-10 CVE-2018-3632 Out-of-bounds Write vulnerability in Intel Active Management Technology Firmware
Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6.x / 7.x / 8.x / 9.x / 10.x / 11.0 / 11.5 / 11.6 / 11.7 / 11.10 / 11.20 could be triggered by an attacker with local administrator permission on the system.
local
low complexity
intel CWE-787
7.2
2018-07-10 CVE-2018-3628 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Active Management Technology Firmware
Buffer overflow in HTTP handler in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 3.x, 4.x, 5.x, 6.x, 7.x, 8.x, 9.x, 10.x, and 11.x may allow an attacker to execute arbitrary code via the same subnet.
low complexity
intel CWE-119
8.3