Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2018-05-10 CVE-2018-3612 Improper Input Validation vulnerability in Intel products
Intel NUC kits with insufficient input validation in system firmware, potentially allows a local attacker to elevate privileges to System Management Mode (SMM).
local
low complexity
intel CWE-20
7.2
2018-04-03 CVE-2018-3641 Unspecified vulnerability in Intel Remote Keyboard Mobile APP
Escalation of privilege in all versions of the Intel Remote Keyboard allows a network attacker to inject keystrokes as a local user.
network
low complexity
intel
7.5
2018-04-03 CVE-2018-3638 Unspecified vulnerability in Intel Remote Keyboard Mobile APP
Escalation of privilege in all versions of the Intel Remote Keyboard allows an authorized local attacker to execute arbitrary code as a privileged user.
local
low complexity
intel
7.2
2018-03-20 CVE-2017-5736 Improper Privilege Management vulnerability in Intel Software Guard Extensions Platform Software Component
An elevation of privilege in Intel Software Guard Extensions Platform Software Component before 1.9.105.42329 allows a local attacker to execute arbitrary code as administrator.
local
low complexity
intel CWE-269
7.2
2018-02-02 CVE-2017-5727 NULL Pointer Dereference vulnerability in Intel Graphics Driver
Pointer dereference in subsystem in Intel Graphics Driver 15.40.x.x, 15.45.x.x, 15.46.x.x allows unprivileged user to elevate privileges via local access.
local
low complexity
intel CWE-476
7.2
2017-12-12 CVE-2017-5717 Incorrect Type Conversion or Cast vulnerability in Intel Graphics Driver
Type Confusion in Content Protection HECI Service in Intel Graphics Driver allows unprivileged user to elevate privileges via local access.
local
low complexity
intel CWE-704
7.2
2017-11-21 CVE-2017-5729 Unspecified vulnerability in Intel products
Frame replay vulnerability in Wi-Fi subsystem in Intel Dual-Band and Tri-Band Wireless-AC Products allows remote attacker to replay frames via channel-based man-in-the-middle.
network
high complexity
intel
7.4
2017-11-21 CVE-2017-5719 Unspecified vulnerability in Intel Deep Learning Training Tool
A vulnerability in the Intel Deep Learning Training Tool Beta 1 allows a network attacker to remotely execute code as a local user.
network
low complexity
intel
7.5
2017-11-21 CVE-2017-5712 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Buffer overflow in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allows attacker with remote Admin access to the system to execute arbitrary code with AMT execution privilege.
network
low complexity
intel asus siemens CWE-119
7.2
2017-11-21 CVE-2017-5711 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Multiple buffer overflows in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code with AMT execution privilege.
local
low complexity
intel asus siemens CWE-119
7.8