Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-11-11 CVE-2022-32569 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Improper buffer restrictions in BIOS firmware for some Intel(R) NUC M15 Laptop Kits before version BCTGL357.0074 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-119
6.7
2022-11-11 CVE-2022-33176 Improper Input Validation vulnerability in Intel products
Improper input validation in BIOS firmware for some Intel(R) NUC 11 Performance kits and Intel(R) NUC 11 Performance Mini PCs before version PATGL357.0042 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2022-11-11 CVE-2022-34152 Improper Input Validation vulnerability in Intel products
Improper input validation in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Kits before version TY0070 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2022-11-11 CVE-2022-35276 Unspecified vulnerability in Intel products
Improper access control in BIOS firmware for some Intel(R) NUC 8 Compute Elements before version CBWHL357.0096 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel
6.7
2022-11-11 CVE-2022-36349 Insecure Default Initialization of Resource vulnerability in Intel products
Insecure default variable initialization in BIOS firmware for some Intel(R) NUC Boards and Intel(R) NUC Kits before version MYi30060 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-1188
5.5
2022-11-11 CVE-2022-36367 Incorrect Default Permissions vulnerability in Intel Support 21.7.40
Incorrect default permissions in the Intel(R) Support Android application before version v22.02.28 may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-276
4.4
2022-11-10 CVE-2021-0185 Improper Input Validation vulnerability in Intel M10Jnp2Sb Firmware 7.209/7.210
Improper input validation in the firmware for some Intel(R) Server Board M10JNP Family before version 7.216 may allow a privileged user to potentially enable an escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2022-09-20 CVE-2021-33076 Improper Authentication vulnerability in Intel products
Improper authentication in firmware for some Intel(R) SSD DC Products may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
low complexity
intel CWE-287
6.8
2022-09-20 CVE-2021-33079 Unspecified vulnerability in Intel products
Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel
4.4
2022-09-20 CVE-2021-33081 Unspecified vulnerability in Intel products
Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel
4.4