Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2017-11-21 CVE-2017-5710 Unspecified vulnerability in Intel Trusted Execution Engine Firmware 3.0
Multiple privilege escalations in kernel in Intel Trusted Execution Engine Firmware 3.0 allows unauthorized process to access privileged content via unspecified vector.
local
low complexity
intel
7.2
2017-11-21 CVE-2017-5709 Unspecified vulnerability in Intel Server Platform Services Firmware 4.0
Multiple privilege escalations in kernel in Intel Server Platform Services Firmware 4.0 allows unauthorized process to access privileged content via unspecified vector.
local
low complexity
intel
7.2
2017-11-21 CVE-2017-5708 Unspecified vulnerability in Intel Manageability Engine Firmware
Multiple privilege escalations in kernel in Intel Manageability Engine Firmware 11.0/11.5/11.6/11.7/11.10/11.20 allow unauthorized process to access privileged content via unspecified vector.
local
low complexity
intel
7.2
2017-11-21 CVE-2017-5707 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Trusted Execution Engine Firmware 3.0
Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.2
2017-11-21 CVE-2017-5706 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Server Platform Services Firmware 4.0
Multiple buffer overflows in kernel in Intel Server Platform Services Firmware 4.0 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.2
2017-11-21 CVE-2017-5705 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Manageability Engine Firmware
Multiple buffer overflows in kernel in Intel Manageability Engine Firmware 11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code.
local
low complexity
intel CWE-119
7.2
2017-10-11 CVE-2017-5700 Insufficiently Protected Credentials vulnerability in Intel products
Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator and User passwords via access to password storage.
local
low complexity
intel CWE-522
7.2
2017-08-29 CVE-2017-12865 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Stack-based buffer overflow in "dnsproxy.c" in connman 1.34 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted response query string passed to the "name" variable.
network
low complexity
intel debian CWE-119
7.5
2017-08-09 CVE-2015-2291 Improper Input Validation vulnerability in Intel products
(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.
local
low complexity
intel microsoft CWE-20
7.2
2017-05-31 CVE-2017-5688 Local Privilege Escalation vulnerability in Intel Solid State Drive Toolbox 3.4.3
There is an escalation of privilege vulnerability in the Intel Solid State Drive Toolbox versions before 3.4.5 which allow a local administrative attacker to load and execute arbitrary code.
local
low complexity
intel
7.2