VYPR

Datacenter Manager

by Intel

CVEs (32)

  • CVE-2021-44228CriKEVDec 10, 2021
    risk 0.94cvss 10.0epss 1.00

    Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log…

  • CVE-2021-45046CriKEVDec 14, 2021
    risk 0.87cvss 9.0epss 1.00

    It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Thread Context Map (MDC) input data when the logging configuration uses a non-default Pattern Layout…

  • CVE-2023-31273CriNov 14, 2023
    risk 0.65cvss 10.0epss 0.01

    Protection mechanism failure in some Intel DCM software before version 5.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

  • CVE-2018-3679CriSep 12, 2018
    risk 0.62cvss 9.6epss 0.01

    Escalation of privilege in Reference UI in Intel Data Center Manager SDK 5.0 and before may allow an unauthorized remote unauthenticated user to potentially execute code via administrator privileges.

  • CVE-2022-33942HigNov 11, 2022
    risk 0.57cvss 8.8epss 0.01

    Protection mechanism failure in the Intel(R) DCM software before version 5.0 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2022-23182HigAug 18, 2022
    risk 0.57cvss 8.8epss 0.00

    Improper access control in the Intel(R) Data Center Manager software before version 4.1 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2020-12347HigNov 12, 2020
    risk 0.57cvss 8.8epss 0.01

    Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via network access.

  • CVE-2019-0102HigFeb 18, 2019
    risk 0.57cvss 8.8epss 0.01

    Insufficient session authentication in web server for Intel(R) Data Center Manager SDK before version 5.0.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

  • CVE-2022-44619HigMay 10, 2023
    risk 0.53cvss 8.2epss 0.00

    Insecure storage of sensitive information in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-21225HigAug 18, 2022
    risk 0.52cvss 8.0epss 0.02

    Improper neutralization in the Intel(R) Data Center Manager software before version 4.1 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2020-12345HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.00

    Improper permissions in the installer for the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2019-0109HigFeb 18, 2019
    risk 0.51cvss 7.8epss 0.00

    Improper folder permissions in Intel(R) Data Center Manager SDK before version 5.0.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2019-0105HigFeb 18, 2019
    risk 0.51cvss 7.8epss 0.00

    Insufficient file permissions checking in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-41998MedMay 10, 2023
    risk 0.44cvss 6.7epss 0.00

    Uncontrolled search path in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-40210MedMay 10, 2023
    risk 0.44cvss 6.8epss 0.00

    Exposure of data element to wrong session in the Intel DCM software before version 5.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2019-0107MedFeb 18, 2019
    risk 0.44cvss 6.7epss 0.00

    Insufficient user prompt in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2019-0106MedFeb 18, 2019
    risk 0.44cvss 6.7epss 0.00

    Insufficient run protection in install routine for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-40685MedMay 10, 2023
    risk 0.42cvss 6.5epss 0.01

    Insufficiently protected credentials in the Intel(R) DCM software before version 5.0.1 may allow an authenticated user to potentially enable information disclosure via network access.

  • CVE-2020-8669MedNov 12, 2020
    risk 0.42cvss 6.5epss 0.01

    Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable information disclosure via network access.

  • CVE-2020-12353MedNov 12, 2020
    risk 0.42cvss 6.5epss 0.01

    Improper permissions in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable denial of service via network access.

Page 1 of 2