Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-08-19 CVE-2019-11140 Improper Input Validation vulnerability in Intel products
Insufficient session validation in system firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-20
6.7
2019-07-11 CVE-2018-18095 Improper Authentication vulnerability in Intel SSD DC S4500 Firmware and SSD DC S4600 Firmware
Improper authentication in firmware for Intel(R) SSD DC S4500 Series and Intel(R) SSD DC S4600 Series before SCV10150 may allow an unprivileged user to potentially enable escalation of privilege via physical access.
low complexity
intel CWE-287
6.8
2019-06-13 CVE-2019-11129 Out-of-bounds Write vulnerability in Intel products
Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-787
6.7
2019-06-13 CVE-2019-11128 Improper Input Validation vulnerability in Intel products
Insufficient input validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-20
6.7
2019-06-13 CVE-2019-11127 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Buffer overflow in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-119
6.7
2019-06-13 CVE-2019-11126 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Pointer corruption in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-119
6.7
2019-06-13 CVE-2019-11125 Improper Input Validation vulnerability in Intel products
Insufficient input validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-20
6.7
2019-06-13 CVE-2019-11124 Out-of-bounds Write vulnerability in Intel products
Out of bound read/write in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-787
6.7
2019-06-13 CVE-2019-11123 Improper Input Validation vulnerability in Intel products
Insufficient session validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
local
low complexity
intel CWE-20
6.7
2019-06-13 CVE-2019-11092 Insufficiently Protected Credentials vulnerability in Intel Open Cloud Integrity Tehnology and Openattestation
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-522
4.4