Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-05-17 CVE-2019-11093 Unquoted Search Path or Element vulnerability in Intel SCS Discovery Utility 12.0.0.129
Unquoted service path in the installer for the Intel(R) SCS Discovery Utility version 12.0.0.129 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
6.7
2019-05-17 CVE-2019-0170 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Converged Security Management Engine Firmware
Buffer overflow in subsystem in Intel(R) DAL before version 12.0.35 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-119
6.7
2019-05-17 CVE-2019-0126 Unspecified vulnerability in Intel products
Insufficient access control in silicon reference firmware for Intel(R) Xeon(R) Scalable Processor, Intel(R) Xeon(R) Processor D Family may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
local
low complexity
intel
6.7
2019-05-17 CVE-2019-0120 Insufficiently Protected Credentials vulnerability in Intel products
Insufficient key protection vulnerability in silicon reference firmware for Intel(R) Pentium(R) Processor J Series, Intel(R) Pentium(R) Processor N Series, Intel(R) Celeron(R) J Series, Intel(R) Celeron(R) N Series, Intel(R) Atom(R) Processor A Series, Intel(R) Atom(R) Processor E3900 Series, Intel(R) Pentium(R) Processor Silver Series may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-522
4.4
2019-05-17 CVE-2019-0119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Buffer overflow vulnerability in system firmware for Intel(R) Xeon(R) Processor D Family, Intel(R) Xeon(R) Scalable Processor, Intel(R) Server Board, Intel(R) Server System and Intel(R) Compute Module may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
local
low complexity
intel CWE-119
6.7
2019-05-17 CVE-2019-0116 Out-of-bounds Read vulnerability in Intel Graphics Driver
An out of bound read in KMD module for Intel(R) Graphics Driver before version 10.18.14.5067 (aka 15.36.x.5067) and 10.18.10.5069 (aka 15.33.x.5069) may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-125
4.4
2019-05-17 CVE-2019-0115 Improper Input Validation vulnerability in Intel Graphics Driver
Insufficient input validation in KMD module for Intel(R) Graphics Driver before version 10.18.14.5067 (aka 15.36.x.5067) and 10.18.10.5069 (aka 15.33.x.5069) may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-20
5.5
2019-05-17 CVE-2019-0114 Race Condition vulnerability in Intel Graphics Driver
A race condition in Intel(R) Graphics Drivers before version 10.18.14.5067 (aka 15.36.x.5067) and 10.18.10.5069 (aka 15.33.x.5069) may allow an authenticated user to potentially enable a denial of service via local access.
local
high complexity
intel CWE-362
4.7
2019-05-17 CVE-2019-0113 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Graphics Driver
Insufficient bounds checking in Intel(R) Graphics Drivers before version 10.18.14.5067 (aka 15.36.x.5067) and 10.18.10.5069 (aka 15.33.x.5069) may allow an authenticated user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-119
5.5
2019-05-17 CVE-2019-0099 Unspecified vulnerability in Intel Server Platform Services Firmware
Insufficient access control vulnerability in subsystem in Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
low complexity
intel
6.8