Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-11-12 CVE-2020-0573 Out-of-bounds Read vulnerability in Intel Csi2 Host Controller
Out of bounds read in the Intel CSI2 Host Controller driver may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-125
5.5
2020-11-12 CVE-2020-0572 Improper Input Validation vulnerability in Intel products
Improper input validation in the firmware for Intel(R) Server Board S2600ST and S2600WF families may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2020-11-12 CVE-2020-8767 Improper Handling of Exceptional Conditions vulnerability in Intel Quartus Prime
Uncaught exception in the Intel(R) 50GbE IP Core for Intel(R) Quartus Prime before version 20.2 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-755
5.5
2020-11-12 CVE-2020-8766 Improper Check for Unusual or Exceptional Conditions vulnerability in Intel Software Guard Extensions Data Center Attestation Primitives
Improper conditions check in the Intel(R) SGX DCAP software before version 1.6 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
low complexity
intel CWE-754
6.5
2020-11-12 CVE-2020-8764 Improper access control in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel netapp
6.7
2020-11-12 CVE-2020-8761 Inadequate Encryption Strength vulnerability in Intel Converged Security and Manageability Engine
Inadequate encryption strength in subsystem for Intel(R) CSME versions before 13.0.40 and 13.30.10 may allow an unauthenticated user to potentially enable information disclosure via physical access.
low complexity
intel CWE-326
4.6
2020-11-12 CVE-2020-8757 Out-of-bounds Read vulnerability in multiple products
Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel netapp CWE-125
6.7
2020-11-12 CVE-2020-8756 Improper Input Validation vulnerability in Intel Converged Security and Manageability Engine
Improper input validation in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-20
6.7
2020-11-12 CVE-2020-8755 Race Condition vulnerability in Intel products
Race condition in subsystem for Intel(R) CSME versions before 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
high complexity
intel CWE-362
6.4
2020-11-12 CVE-2020-8751 Unspecified vulnerability in Intel products
Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, Intel(R) TXE versions before 3.1.80 may allow an unauthenticated user to potentially enable information disclosure via physical access.
low complexity
intel
4.6