Vulnerabilities > Intel > Low

DATE CVE VULNERABILITY TITLE RISK
2017-08-09 CVE-2017-5695 Improper Input Validation vulnerability in Intel products
Data corruption vulnerability in firmware in Intel Solid-State Drive Consumer, Professional, Embedded, Data Center affected firmware versions LSBG200, LSF031C, LSF036C, LBF010C, LSBG100, LSF031C, LSF036C, LBF010C, LSF031P, LSF036P, LBF010P, LSF031P, LSF036P, LBF010P, LSMG200, LSF031E, LSF036E, LSMG100, LSF031E, LSF036E, LSDG200, LSF031D, LSF036D allows local users to cause a denial of service via unspecified vectors.
local
low complexity
intel CWE-20
2.1
2017-04-03 CVE-2017-5684 Incorrect Default Permissions vulnerability in Intel Stk2Mv64Cc Bios
The BIOS in Intel Compute Stick systems based on 6th Gen Intel Core processors prior to version CC047 may allow an attacker with physical access to the system to gain access to personal information.
local
low complexity
intel CWE-276
2.1
2017-04-03 CVE-2017-5685 Incorrect Default Permissions vulnerability in Intel Nuc6I7Kyk Bios Kyskli70.86A.0042.2016.0929.1933
The BIOS in Intel NUC systems based on 6th Gen Intel Core processors prior to version KY0045 may allow may allow an attacker with physical access to the system to gain access to personal information.
local
low complexity
intel CWE-276
2.1
2017-04-03 CVE-2017-5686 Incorrect Default Permissions vulnerability in Intel Nuc6I3Syh Bios and Nuc6I3Syk Bios
The BIOS in Intel NUC systems based on 6th Gen Intel Core processors prior to version SY0059 may allow may allow an attacker with physical access to the system to gain access to personal information.
local
low complexity
intel CWE-276
2.1
2016-12-08 CVE-2016-8104 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Proset/Wireless Software and Drivers
Buffer overflow in Intel PROSet/Wireless Software and Drivers in versions before 19.20.3 allows a local user to crash iframewrk.exe causing a potential denial of service.
local
low complexity
intel CWE-119
2.1
2016-10-10 CVE-2016-8100 Information Exposure vulnerability in Intel Integrated Performance Primitives 9.0
Intel Integrated Performance Primitives (aka IPP) Cryptography before 9.0.4 makes it easier for local users to discover RSA private keys via a side-channel attack.
local
low complexity
intel CWE-200
2.1
2013-08-25 CVE-2013-4216 Permissions, Privileges, and Access Controls vulnerability in Intel Wimax Network Service 1.5.0/1.5.2
The Trace_OpenLogFile function in InfraStack/OSDependent/Linux/InfraStackModules/TraceModule/TraceModule.c in the Trace module in the Intel WiMAX Network Service through 1.5.2 for Intel Wireless WiMAX Connection 2400 devices uses world-writable permissions for wimaxd.log, which allows local users to cause a denial of service (data corruption) by modifying this file.
local
low complexity
intel CWE-264
2.1
2013-08-25 CVE-2013-4217 Cryptographic Issues vulnerability in Intel Wimax Network Service 1.5.0/1.5.2
The OSAL_Crypt_SetEncryptedPassword function in InfraStack/OSDependent/Linux/OSAL/Services/wimax_osal_crypt_services.c in the OSAL crypt module in the Intel WiMAX Network Service through 1.5.2 for Intel Wireless WiMAX Connection 2400 devices logs a cleartext password during certain attempts to set a password, which allows local users to obtain sensitive information by reading a log file.
local
low complexity
intel CWE-310
2.1
2013-08-25 CVE-2013-4218 Cryptographic Issues vulnerability in Intel Wimax Network Service 1.5.0/1.5.2
The InitMethodAndPassword function in InfraStack/OSAgnostic/WiMax/Agents/Supplicant/Source/SupplicantAgent.c in the Intel WiMAX Network Service through 1.5.2 for Intel Wireless WiMAX Connection 2400 devices uses the same RSA private key in supplicant_key.pem on all systems, which allows local users to obtain sensitive information via unspecified decryption operations.
local
low complexity
intel CWE-310
2.1
2008-09-03 CVE-2008-3900 Information Exposure vulnerability in Intel Bios Pe94510M.86A.0050.2007.0710.1559
Intel firmware PE94510M.86A.0050.2007.0710.1559 stores pre-boot authentication passwords in the BIOS Keyboard buffer and does not clear this buffer after use, which allows local users to obtain sensitive information by reading the physical memory locations associated with this buffer.
local
low complexity
intel CWE-200
2.1