VYPR

Manageability Commander

by Intel

CVEs (4)

  • CVE-2022-29887HigAug 11, 2023
    risk 0.53cvss 8.1epss 0.01

    Cross-site Scripting (XSS) in some Intel(R) Manageability Commander software before version 2.3 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

  • CVE-2022-26341HigNov 11, 2022
    risk 0.53cvss 8.2epss 0.00

    Insufficiently protected credentials in software in Intel(R) AMT SDK before version 16.0.4.1, Intel(R) EMA before version 1.7.1 and Intel(R) MC before version 2.3.2 may allow an authenticated user to potentially enable escalation of privilege via network access.

  • CVE-2021-0126HigMay 12, 2022
    risk 0.52cvss 8.0epss 0.00

    Improper input validation for the Intel(R) Manageability Commander before version 2.2 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2022-41610MedMay 10, 2023
    risk 0.33cvss 5.0epss 0.00

    Improper authorization in Intel(R) EMA Configuration Tool before version 1.0.4 and Intel(R) MC before version 2.4 software may allow an authenticated user to potentially enable denial of service via local access.