Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2019-06-13 CVE-2019-0128 Permissions, Privileges, and Access Controls vulnerability in Intel Chipset Device Software 10.1.1.14/10.1.1.38
Improper permissions in the installer for Intel(R) Chipset Device Software (INF Update Utility) before version 10.1.1.45 may allow an authenticated user to escalate privilege via local access.
local
low complexity
intel CWE-264
7.8
2019-06-13 CVE-2018-3702 Incorrect Permission Assignment for Critical Resource vulnerability in Intel ITE Tech Consumer Infrared Driver
Improper permissions in the installer for the ITE Tech* Consumer Infrared Driver for Windows 10 versions before 5.4.3.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2019-05-17 CVE-2019-11094 Improper Input Validation vulnerability in Intel NUC KIT Firmware
Insufficient input validation in system firmware for Intel (R) NUC Kit may allow an authenticated user to potentially enable escalation of privilege, denial of service, and/or information disclosure via local access.
local
low complexity
intel CWE-20
7.8
2019-05-17 CVE-2019-11085 Improper Input Validation vulnerability in Intel I915 Firmware
Insufficient input validation in Kernel Mode Driver in Intel(R) i915 Graphics for Linux before version 5.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
7.8
2019-05-17 CVE-2019-0171 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Quartus II and Quartus Prime
Improper directory permissions in the installer for Intel(R) Quartus(R) software may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2019-05-17 CVE-2019-0138 Incorrect Permission Assignment for Critical Resource vulnerability in Intel ACU Wizard 12.0.0.129
Improper directory permissions in Intel(R) ACU Wizard version 12.0.0.129 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2019-05-17 CVE-2019-0132 Unspecified vulnerability in Intel Unite
Data Corruption in Intel Unite(R) Client before version 3.3.176.13 may allow an unauthenticated user to potentially cause a denial of service via network access.
network
low complexity
intel
7.5
2019-05-17 CVE-2019-0096 Out-of-bounds Write vulnerability in Intel Active Management Technology Firmware
Out of bound write vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an authenticated user to potentially enable escalation of privilege via adjacent network access.
low complexity
intel CWE-787
8.0
2019-05-17 CVE-2019-0091 Code Injection vulnerability in Intel products
Code injection vulnerability in installer for Intel(R) CSME before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) TXE 3.1.65, 4.0.15 may allow an unprivileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-94
7.8
2019-05-17 CVE-2019-0090 Unspecified vulnerability in Intel products
Insufficient access control vulnerability in subsystem for Intel(R) CSME before versions 11.x, 12.0.35 Intel(R) TXE 3.x, 4.x, Intel(R) Server Platform Services 3.x, 4.x, Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
high complexity
intel
7.1