Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2020-11-12 CVE-2020-12324 Unspecified vulnerability in Intel Thunderbolt DCH Driver 1.41.1054.0
Protection mechanism failure in some Intel(R) Thunderbolt(TM) DCH drivers for Windows* before version 72 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2020-11-12 CVE-2020-12320 Uncontrolled Search Path Element vulnerability in Intel SCS Add-On for Microsoft Sccm 2.1.10
Uncontrolled search path in Intel(R) SCS Add-on for Microsoft* SCCM before version 2.1.10 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2020-11-12 CVE-2020-8760 Integer Overflow or Wraparound vulnerability in multiple products
Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel netapp CWE-190
7.8
2020-11-12 CVE-2020-8754 Out-of-bounds Read vulnerability in multiple products
Out-of-bounds read in subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable information disclosure via network access.
network
low complexity
intel netapp CWE-125
7.5
2020-11-12 CVE-2020-8753 Out-of-bounds Read vulnerability in Intel Active Management Technology Firmware
Out-of-bounds read in DHCP subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable information disclosure via network access.
network
low complexity
intel CWE-125
7.5
2020-11-12 CVE-2020-8750 Use After Free vulnerability in Intel Trusted Execution Engine 3.0/3.1.75/4.0.25
Use after free in Kernel Mode Driver for Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-416
7.8
2020-11-12 CVE-2020-8749 Out-of-bounds Read vulnerability in multiple products
Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel netapp CWE-125
8.8
2020-11-12 CVE-2020-8744 Improper Initialization vulnerability in multiple products
Improper initialization in subsystem for Intel(R) CSME versions before12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE versions before 4.0.30 Intel(R) SPS versions before E3_05.01.04.200 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel siemens CWE-665
7.8
2020-11-12 CVE-2020-8739 Use of potentially dangerous function in Intel BIOS platform sample code for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel netapp
7.8
2020-11-12 CVE-2020-12354 Incorrect Default Permissions vulnerability in Intel Active Management Technology Software Development KIT
Incorrect default permissions in Windows(R) installer in Intel(R) AMT SDK versions before 14.0.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8