Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-06-13 CVE-2019-11128 Improper Input Validation vulnerability in Intel products
Insufficient input validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-20
6.7
2019-06-13 CVE-2019-11127 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Buffer overflow in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-119
6.7
2019-06-13 CVE-2019-11126 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Pointer corruption in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-119
6.7
2019-06-13 CVE-2019-11125 Improper Input Validation vulnerability in Intel products
Insufficient input validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-20
6.7
2019-06-13 CVE-2019-11124 Out-of-bounds Write vulnerability in Intel products
Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-787
6.7
2019-06-13 CVE-2019-11123 Improper Input Validation vulnerability in Intel products
Insufficient session validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-20
6.7
2019-06-13 CVE-2019-11092 Insufficiently Protected Credentials vulnerability in Intel Open Cloud Integrity Tehnology and Openattestation
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-522
4.4
2019-06-13 CVE-2019-0181 Unspecified vulnerability in Intel Open Cloud Integrity Tehnology and Openattestation
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel
6.7
2019-06-13 CVE-2019-0180 Insufficiently Protected Credentials vulnerability in Intel Open Cloud Integrity Tehnology and Openattestation
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-522
4.4
2019-06-13 CVE-2019-0179 Insufficiently Protected Credentials vulnerability in Intel Open Cloud Integrity Tehnology and Openattestation
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-522
4.4