Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-03-14 CVE-2018-12189 Improper Check for Unusual or Exceptional Conditions vulnerability in Intel products
Unhandled exception in Content Protection subsystem in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before 3.1.60 or 4.0.10 may allow privileged user to potentially modify data via local access.
local
low complexity
intel CWE-754
4.4
2019-03-14 CVE-2018-12188 Improper Input Validation vulnerability in Intel products
Insufficient input validation in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before version 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially modify data via physical access.
low complexity
intel CWE-20
4.6
2019-03-14 CVE-2018-12185 Improper Input Validation vulnerability in Intel Converged Security Management Engine Firmware
Insufficient input validation in Intel(R) AMT in Intel(R) CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow an unauthenticated user to potentially execute arbitrary code via physical access.
low complexity
intel CWE-20
6.8
2019-02-18 CVE-2019-0112 Unspecified vulnerability in Intel Data Center Manager
Improper flow control in crypto routines for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable a denial of service via local access.
local
low complexity
intel
4.4
2019-02-18 CVE-2019-0111 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Data Center Manager
Improper file permissions for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-732
5.5
2019-02-18 CVE-2019-0110 Unspecified vulnerability in Intel Data Center Manager
Insufficient key management for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel
5.5
2019-02-18 CVE-2019-0108 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Data Center Manager
Improper file permissions for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable disclosure of information via local access.
local
low complexity
intel CWE-732
5.5
2019-02-18 CVE-2019-0107 Unspecified vulnerability in Intel Data Center Manager
Insufficient user prompt in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel
6.7
2019-02-18 CVE-2019-0106 Unspecified vulnerability in Intel Data Center Manager
Insufficient run protection in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel
6.7
2019-02-18 CVE-2019-0104 Unspecified vulnerability in Intel Data Center Manager
Insufficient file protection in uninstall routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel
5.5