Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2024-02-14 CVE-2023-32646 Uncontrolled Search Path Element vulnerability in Intel Virtual Raid on CPU 8.0.0.4035
Uncontrolled search path element in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.3
2024-02-14 CVE-2023-32647 Unspecified vulnerability in Intel Extreme Tuning Utility
Improper access control in some Intel(R) XTU software before version 7.12.0.29 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2024-02-14 CVE-2023-33870 Incorrect Permission Assignment for Critical Resource vulnerability in Intel products
Insecure inherited permissions in some Intel(R) Ethernet tools and driver install software may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2024-02-14 CVE-2023-34315 Incorrect Default Permissions vulnerability in Intel Virtual Raid on CPU 8.0.0.4035
Incorrect default permissions in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2024-02-14 CVE-2023-34351 Out-of-bounds Write vulnerability in Intel Performance Counter Monitor
Buffer underflow in some Intel(R) PCM software before version 202307 may allow an unauthenticated user to potentially enable denial of service via network access.
network
low complexity
intel CWE-787
7.5
2024-02-14 CVE-2023-35003 Path Traversal vulnerability in Intel Virtual Raid on CPU 8.0.0.4035
Path transversal in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-22
7.8
2024-02-14 CVE-2023-35060 Uncontrolled Search Path Element vulnerability in Intel Battery Life Diagnostic Tool 1.0.7/2.2.0/2.2.1
Uncontrolled search path in some Intel(R) Battery Life Diagnostic Tool software before version 2.3.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2024-01-19 CVE-2023-28722 Unspecified vulnerability in Intel products
Improper buffer restrictions for some Intel NUC BIOS firmware before version IN0048 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2024-01-19 CVE-2023-28738 Improper Input Validation vulnerability in Intel products
Improper input validation for some Intel NUC BIOS firmware before version JY0070 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2024-01-19 CVE-2023-28743 Improper Input Validation vulnerability in Intel products
Improper input validation for some Intel NUC BIOS firmware before version QN0073 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
7.8