Vulnerabilities > Intel > Setup AND Configuration Software

DATE CVE VULNERABILITY TITLE RISK
2023-05-10 CVE-2022-43465 Incorrect Authorization vulnerability in Intel Setup and Configuration Software
Improper authorization in the Intel(R) SCS software all versions may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-863
5.5
2023-05-10 CVE-2023-22440 Incorrect Default Permissions vulnerability in Intel Setup and Configuration Software
Incorrect default permissions in the Intel(R) SCS Add-on software installer for Microsoft SCCM all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2022-02-09 CVE-2021-33107 Insufficiently Protected Credentials vulnerability in Intel products
Insufficiently protected credentials in USB provisioning for Intel(R) AMT SDK before version 16.0.3, Intel(R) SCS before version 12.2 and Intel(R) MEBx before versions 11.0.0.0012, 12.0.0.0011, 14.0.0.0004 and 15.0.0.0004 may allow an unauthenticated user to potentially enable information disclosure via physical access.
local
low complexity
intel CWE-522
2.1