Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2021-02-17 CVE-2020-0521 Unspecified vulnerability in Intel Graphics Drivers
Insufficient control flow management in some Intel(R) Graphics Drivers before version 15.45.32.5145 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2021-02-09 CVE-2021-26675 Out-of-bounds Write vulnerability in multiple products
A stack-based buffer overflow in dnsproxy in ConnMan before 1.39 could be used by network adjacent attackers to execute code.
low complexity
intel debian opensuse CWE-787
8.8
2021-02-02 CVE-2020-8672 Out-of-bounds Read vulnerability in Intel Bios
Out of bound read in BIOS firmware for 8th, 9th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 Series Processors may allow an unauthenticated user to potentially enable elevation of privilege or denial of service via local access.
local
low complexity
intel CWE-125
7.8
2020-11-13 CVE-2020-12313 Unspecified vulnerability in Intel Proset/Wireless Wifi
Insufficient control flow management in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel
8.8
2020-11-12 CVE-2020-24525 Incorrect Permission Assignment for Critical Resource vulnerability in Intel products
Insecure inherited permissions in firmware update tool for some Intel(R) NUCs may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2020-11-12 CVE-2020-24456 Incorrect Default Permissions vulnerability in Intel Board ID Tool 1.01
Incorrect default permissions in the Intel(R) Board ID Tool version v.1.01 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2020-11-12 CVE-2020-24454 XXE vulnerability in Intel Quartus Prime
Improper Restriction of XML External Entity Reference in subsystem forIntel(R) Quartus(R) Prime Pro Edition before version 20.3 and Intel(R) Quartus(R) Prime Standard Edition before version 20.2 may allow unauthenticated user to potentially enable information disclosure via network access.
network
low complexity
intel CWE-611
7.5
2020-11-12 CVE-2020-12350 Unspecified vulnerability in Intel Extreme Tuning Utility 6.4.1.21
Improper access control in the Intel(R) XTU before version 6.5.1.360 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2020-11-12 CVE-2020-12347 Improper Input Validation vulnerability in Intel Data Center Manager
Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-20
8.8
2020-11-12 CVE-2020-12346 Incorrect Default Permissions vulnerability in Intel Battery Life Diagnostic Tool
Improper permissions in the installer for the Intel(R) Battery Life Diagnostic Tool before version 1.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8