Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2019-12-18 CVE-2019-0131 Improper Input Validation vulnerability in Intel Active Management Technology Firmware
Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable denial of service or information disclosure via adjacent access.
low complexity
intel CWE-20
8.1
2019-12-16 CVE-2019-14610 Unspecified vulnerability in Intel products
Improper access control in firmware for Intel(R) NUC(R) may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2019-12-16 CVE-2019-14608 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Improper buffer restrictions in firmware for Intel(R) NUC(R) may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-119
7.8
2019-12-16 CVE-2019-14605 Incorrect Default Permissions vulnerability in Intel Setup and Configuration Software Platform Discovery Utility
Improper permissions in the installer for the Intel(R) SCS Platform Discovery Utility, all versions, may allow an authenticated user to potentially enable escalation of privilege via local attack.
local
low complexity
intel CWE-276
7.8
2019-12-16 CVE-2019-14603 Incorrect Default Permissions vulnerability in Intel Quartus Prime
Improper permissions in the installer for the License Server software for Intel® Quartus® Prime Pro Edition before version 19.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2019-12-16 CVE-2019-14599 Untrusted Search Path vulnerability in Intel Control Center-I 2.1.0.0
Unquoted service path in Control Center-I version 2.1.0.0 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-426
7.8
2019-12-16 CVE-2019-14568 Incorrect Default Permissions vulnerability in Intel Rapid Storage Technology
Improper permissions in the executable for Intel(R) RST before version 17.7.0.1006 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2019-12-16 CVE-2019-0159 Unspecified vulnerability in Intel Administrative Tools for Intel Network Adapters
Insufficient memory protection in the Linux Administrative Tools for Intel(R) Network Adapters before version 24.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2019-12-16 CVE-2019-0134 Incorrect Default Permissions vulnerability in Intel Dynamic Platform and Thermal Framework 8.3.10208.5643
Improper permissions in the Intel(R) Dynamic Platform and Thermal Framework v8.3.10208.5643 and before may allow an authenticated user to potentially execute code at an elevated level of privilege.
local
low complexity
intel CWE-276
7.8
2019-11-14 CVE-2019-11111 NULL Pointer Dereference vulnerability in multiple products
Pointer corruption in the Unified Shader Compiler in Intel(R) Graphics Drivers before 10.18.14.5074 (aka 15.36.x.5074) may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel netapp CWE-476
7.8