Vulnerabilities > Intel > Xeon E 2254Me Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-05-10 CVE-2022-38087 Exposure of Resource to Wrong Sphere vulnerability in Intel products
Exposure of resource to wrong sphere in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-668
5.5
2022-06-15 CVE-2022-21180 Improper Input Validation vulnerability in Intel products
Improper input validation for some Intel(R) Processors may allow an authenticated user to potentially cause a denial of service via local access.
local
low complexity
intel CWE-20
5.5
2022-05-12 CVE-2021-33124 Out-of-bounds Write vulnerability in Intel products
Out-of-bounds write in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.
local
low complexity
intel CWE-787
6.7
2022-02-09 CVE-2021-0118 Out-of-bounds Read vulnerability in multiple products
Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
local
low complexity
netapp intel CWE-125
6.7
2022-02-09 CVE-2021-0119 Improper Initialization vulnerability in multiple products
Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
low complexity
netapp intel CWE-665
6.2
2022-02-09 CVE-2021-0124 Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
low complexity
netapp intel
6.6
2022-02-09 CVE-2021-0125 Improper Initialization vulnerability in multiple products
Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.
low complexity
netapp intel CWE-665
6.6
2020-01-28 CVE-2020-0549 Improper Resource Shutdown or Release vulnerability in multiple products
Cleanup errors in some data cache evictions for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
5.5
2020-01-28 CVE-2020-0548 Improper Resource Shutdown or Release vulnerability in Intel products
Cleanup errors in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-404
5.5
2019-11-14 CVE-2019-0151 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Insufficient memory protection in Intel(R) TXT for certain Intel(R) Core Processors and Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-119
6.7