Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-10 CVE-2018-3627 Logic bug in Intel Converged Security Management Engine 11.x may allow an attacker to execute arbitrary code via local privileged access.
local
low complexity
intel netapp
8.2
2018-05-10 CVE-2018-3649 Uncontrolled Search Path Element vulnerability in Intel products
DLL injection vulnerability in the installation executables (Autorun.exe and Setup.exe) for Intel's wireless drivers and related software in Intel Dual Band Wireless-AC, Tri-Band Wireless-AC and Wireless-AC family of products allows a local attacker to cause escalation of privilege via remote code execution.
local
low complexity
intel CWE-427
7.8
2018-05-10 CVE-2018-3612 Improper Input Validation vulnerability in Intel products
Intel NUC kits with insufficient input validation in system firmware, potentially allows a local attacker to elevate privileges to System Management Mode (SMM).
local
low complexity
intel CWE-20
7.8
2018-04-05 CVE-2018-3624 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel 2G Modem Firmware
Buffer overflow in ETWS processing module Intel XMM71xx, XMM72xx, XMM73xx, XMM74xx and Sofia 3G/R allows remote attacker to potentially execute arbitrary code via an adjacent network.
high complexity
intel CWE-119
8.3
2018-04-03 CVE-2018-3645 Unspecified vulnerability in Intel Remote Keyboard Mobile APP
Escalation of privilege in all versions of the Intel Remote Keyboard allows a local attacker to inject keystrokes into another remote keyboard session.
local
low complexity
intel
7.8
2018-04-03 CVE-2018-3638 Unspecified vulnerability in Intel Remote Keyboard Mobile APP
Escalation of privilege in all versions of the Intel Remote Keyboard allows an authorized local attacker to execute arbitrary code as a privileged user.
local
low complexity
intel
7.8
2018-03-20 CVE-2017-5736 Improper Privilege Management vulnerability in Intel Software Guard Extensions Platform Software Component
An elevation of privilege in Intel Software Guard Extensions Platform Software Component before 1.9.105.42329 allows a local attacker to execute arbitrary code as administrator.
local
low complexity
intel CWE-269
8.8
2018-02-02 CVE-2017-5727 NULL Pointer Dereference vulnerability in Intel Graphics Driver
Pointer dereference in subsystem in Intel Graphics Driver 15.40.x.x, 15.45.x.x, 15.46.x.x allows unprivileged user to elevate privileges via local access.
local
low complexity
intel CWE-476
7.8
2018-01-23 CVE-2015-1142857 7PK - Security Features vulnerability in multiple products
On multiple SR-IOV cars it is possible for VF's assigned to guests to send ethernet flow control pause frames via the PF.
network
low complexity
intel linux dpdk CWE-254
8.6
2018-01-18 CVE-2017-5696 Untrusted Search Path vulnerability in Intel Graphics Driver
Untrusted search path in Intel Graphics Driver 15.40.x.x, 15.45.x.x, and 21.20.x.x allows unprivileged user to elevate privileges via local access.
local
low complexity
intel CWE-426
7.8