Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2021-06-17 CVE-2021-0143 Incorrect Default Permissions vulnerability in Intel Brand Verification Tool
Improper permissions in the installer for the Intel(R) Brand Verification Tool before version 11.0.0.1225 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-06-09 CVE-2020-24473 Out-of-bounds Write vulnerability in Intel Baseboard Management Controller Firmware 2.09/2.18
Out of bounds write in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-787
7.8
2021-06-09 CVE-2020-24474 Classic Buffer Overflow vulnerability in Intel Baseboard Management Controller Firmware 2.09/2.18
Buffer overflow in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel CWE-120
8.0
2021-06-09 CVE-2020-24489 Incomplete Cleanup vulnerability in multiple products
Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel debian CWE-459
8.8
2021-06-09 CVE-2021-0052 Improper Privilege Management vulnerability in Intel Computing Improvement Program
Incorrect default privileges in the Intel(R) Computing Improvement Program before version 2.4.6522 may allow an authenticated user to potentially enable an escalation of privilege via local access.
local
low complexity
intel CWE-269
7.8
2021-06-09 CVE-2021-0055 Incorrect Permission Assignment for Critical Resource vulnerability in Intel products
Insecure inherited permissions for some Intel(R) NUC 9 Extreme Laptop Kit LAN Drivers before version 10.42 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2021-06-09 CVE-2021-0056 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Lapbc510 Firmware and Lapbc710 Firmware
Insecure inherited permissions for the Intel(R) NUC M15 Laptop Kit Driver Pack software before updated version 1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2021-06-09 CVE-2021-0057 Uncontrolled Search Path Element vulnerability in Intel Lapbc510 Firmware and Lapbc710 Firmware
Uncontrolled search path in the Intel(R) NUC M15 Laptop Kit Driver Pack software before updated version 1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2021-06-09 CVE-2021-0058 Incorrect Default Permissions vulnerability in Intel Lapbc510 Firmware and Lapbc710 Firmware
Incorrect default permissions in the Intel(R) NUC M15 Laptop Kit Driver Pack software before updated version 1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2021-06-09 CVE-2021-0073 Unspecified vulnerability in Intel Driver & Support Assistant
Insufficient control flow management in Intel(R) DSA before version 20.11.50.9 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8