Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-01-10 CVE-2018-12167 Improper Input Validation vulnerability in Intel Optane SSD DC P4800X Firmware
Firmware update routine in bootloader for Intel(R) Optane(TM) SSD DC P4800X before version E2010435 may allow a privileged user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-20
4.4
2019-01-10 CVE-2018-12166 Improper Input Validation vulnerability in Intel Optane SSD DC P4800X Firmware
Insufficient write protection in firmware for Intel(R) Optane(TM) SSD DC P4800X before version E2010435 may allow a privileged user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-20
4.4
2019-01-10 CVE-2017-3718 Unspecified vulnerability in Intel products
Improper setting of device configuration in system firmware for Intel(R) NUC kits may allow a privileged user to potentially enable escalation of privilege via physical access.
low complexity
intel
6.2
2018-12-14 CVE-2018-3705 Incorrect Permission Assignment for Critical Resource vulnerability in Intel System Defense Utility
Improper directory permissions in the installer for the Intel(R) System Defense Utility (all versions) may allow authenticated users to potentially enable a denial of service via local access.
local
low complexity
intel CWE-732
5.5
2018-12-14 CVE-2018-18096 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Quickassist Technology for Linux
Improper memory handling in Intel QuickAssist Technology for Linux (all versions) may allow an authenticated user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-119
5.5
2018-12-14 CVE-2018-12206 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Quickassist Technology for Linux
Improper configuration of hardware access in Intel QuickAssist Technology for Linux (all versions) may allow an authenticated user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-119
5.5
2018-12-05 CVE-2018-12155 Information Exposure vulnerability in Intel Integrated Performance Primitives
Data leakage in cryptographic libraries for Intel IPP before 2019 update1 release may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-200
5.5
2018-11-14 CVE-2018-3699 Cross-site Scripting vulnerability in Intel Raid web Console 3
Cross-site scripting in the Intel RAID Web Console v3 for Windows may allow an unauthenticated user to elevate privilege via remote access.
network
low complexity
intel CWE-79
6.1
2018-11-14 CVE-2018-3696 Improper Authentication vulnerability in Intel Raid web Console 3
Authentication bypass in the Intel RAID Web Console 3 for Windows before 4.186 may allow an unprivileged user to potentially gain administrative privileges via local access.
local
low complexity
intel CWE-287
5.5
2018-11-14 CVE-2018-3621 Information Exposure vulnerability in Intel Driver&Support Assistant
Insufficient input validation in the Intel Driver & Support Assistant before 3.6.0.4 may allow an unauthenticated user to potentially enable information disclosure via adjacent access.
low complexity
intel CWE-200
6.5