Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-02-18 CVE-2018-3700 Code Injection vulnerability in Intel USB 3.0 Extensible Host Controller Driver 5.0.4.42/5.0.4.43
Code injection vulnerability in the installer for Intel(R) USB 3.0 eXtensible Host Controller Driver for Microsoft Windows 7 before version 5.0.4.43v2 may allow a user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-94
6.7
2019-02-18 CVE-2018-12159 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Proset/Wireless
Buffer overflow in the command-line interface for Intel(R) PROSet Wireless v20.50 and before may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-119
5.5
2019-01-10 CVE-2018-12167 Improper Input Validation vulnerability in Intel Optane SSD DC P4800X Firmware
Firmware update routine in bootloader for Intel(R) Optane(TM) SSD DC P4800X before version E2010435 may allow a privileged user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-20
4.4
2019-01-10 CVE-2018-12166 Improper Input Validation vulnerability in Intel Optane SSD DC P4800X Firmware
Insufficient write protection in firmware for Intel(R) Optane(TM) SSD DC P4800X before version E2010435 may allow a privileged user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-20
4.4
2019-01-10 CVE-2017-3718 Unspecified vulnerability in Intel products
Improper setting of device configuration in system firmware for Intel(R) NUC kits may allow a privileged user to potentially enable escalation of privilege via physical access.
low complexity
intel
6.2
2018-12-14 CVE-2018-3705 Incorrect Permission Assignment for Critical Resource vulnerability in Intel System Defense Utility
Improper directory permissions in the installer for the Intel(R) System Defense Utility (all versions) may allow authenticated users to potentially enable a denial of service via local access.
local
low complexity
intel CWE-732
5.5
2018-12-14 CVE-2018-18096 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Quickassist Technology for Linux
Improper memory handling in Intel QuickAssist Technology for Linux (all versions) may allow an authenticated user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-119
5.5
2018-12-14 CVE-2018-12206 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Quickassist Technology for Linux
Improper configuration of hardware access in Intel QuickAssist Technology for Linux (all versions) may allow an authenticated user to potentially enable a denial of service via local access.
local
low complexity
intel CWE-119
5.5
2018-12-05 CVE-2018-12155 Information Exposure vulnerability in Intel Integrated Performance Primitives
Data leakage in cryptographic libraries for Intel IPP before 2019 update1 release may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-200
5.5
2018-11-14 CVE-2018-3699 Cross-site Scripting vulnerability in Intel Raid web Console 3
Cross-site scripting in the Intel RAID Web Console v3 for Windows may allow an unauthenticated user to elevate privilege via remote access.
network
low complexity
intel CWE-79
6.1