VYPR

Vendor CVEs

Intel

All CVEs

2,357 total · sorted by risk
  • CVE-2022-26367MedNov 11, 2022
    risk 0.39cvss 6.0epss 0.00

    Improper buffer restrictions in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-26079MedNov 11, 2022
    risk 0.39cvss 6.0epss 0.00

    Improper conditions check in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-25917MedNov 11, 2022
    risk 0.39cvss 6.0epss 0.00

    Uncaught exception in the firmware for some Intel(R) Server Board M50CYP Family before version R01.01.0005 may allow a privileged user to potentially enable a denial of service via local access.

  • CVE-2019-11090MedDec 18, 2019
    risk 0.39cvss 5.9epss 0.03

    Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0 and 14.0.10; Intel(R) TXE 3.1.70 and 4.0.20; Intel(R) SPS before versions SPS_E5_04.01.04.305.0, SPS_SoC-X_04.00.04.108.0, SPS_SoC-A_04.00.04.191.0,…

  • CVE-2019-11139MedNov 14, 2019
    risk 0.39cvss 6.0epss 0.00

    Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.

  • CVE-2018-12215MedMar 14, 2019
    risk 0.39cvss 6.0epss 0.00

    Insufficient input validation in Kernel Mode Driver in Intel(R) Graphics Driver for Windows* before versions 10.18.x.5059 (aka 15.33.x.5059), 10.18.x.5057 (aka 15.36.x.5057), 20.19.x.5063 (aka 15.40.x.5063) 21.20.x.5064 (aka 15.45.x.5064) and 24.20.100.6373 potentially enables a…

  • CVE-2018-12213MedMar 14, 2019
    risk 0.39cvss 6.0epss 0.00

    Potential memory corruption in Kernel Mode Driver in Intel(R) Graphics Driver for Windows* before versions 10.18.x.5059 (aka 15.33.x.5059), 10.18.x.5057 (aka 15.36.x.5057), 20.19.x.5063 (aka 15.40.x.5063) 21.20.x.5064 (aka 15.45.x.5064) and 24.20.100.6373 potentially enables an…

  • CVE-2018-12198MedMar 14, 2019
    risk 0.39cvss 6.0epss 0.00

    Insufficient input validation in Intel(R) Server Platform Services HECI subsystem before version SPS_E5_04.00.04.393.0 may allow privileged user to potentially cause a denial of service via local access.

  • CVE-2018-12158MedOct 10, 2018
    risk 0.39cvss 6.0epss 0.00

    Insufficient input validation in BIOS update utility in Intel NUC FW kits downloaded before May 24, 2018 may allow a privileged user to potentially trigger a denial of service or information disclosure via local access.

  • CVE-2018-3616MedSep 12, 2018
    risk 0.39cvss 5.9epss 0.02

    Bleichenbacher-style side channel vulnerability in TLS implementation in Intel Active Management Technology before 12.0.5 may allow an unauthenticated user to potentially obtain the TLS session key via the network.

  • CVE-2017-5703MedApr 3, 2018
    risk 0.39cvss 6.0epss 0.00

    Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.

  • CVE-2018-3610MedJan 9, 2018
    risk 0.39cvss 6.0epss 0.00

    SEMA driver in Intel Driver and Support Assistant before version 3.1.1 allows a local attacker the ability to read and writing to Memory Status registers potentially allowing information disclosure or a denial of service condition.

  • CVE-2016-8106MedJan 9, 2017
    risk 0.39cvss 5.9epss 0.05

    A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic working under certain network use conditions.

  • CVE-2026-24099MedAug 11, 2026
    risk 0.38cvss epss 0.00

    Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. System software adversary with an unauthenticated user combined with a high complexity attack may enable denial of service. This result may potentially…

  • CVE-2026-20908MedAug 11, 2026
    risk 0.38cvss epss 0.00

    Time-of-check time-of-use race condition for the Intel(R) NPU Driver for Windows for all versions within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of…

  • CVE-2026-20708MedAug 11, 2026
    risk 0.38cvss epss 0.00

    Insertion of sensitive information into log file in the subsystem for the Intel(R) AMT and Intel(R) Standard Manageability may allow an information disclosure. Network adversary with a privileged user combined with a high complexity attack may enable data exposure. This result…

  • CVE-2025-20096MedMar 10, 2026
    risk 0.38cvss epss 0.00

    Improper input validation in the UEFI firmware for some Intel Reference Platforms may allow an escalation of privilege. System software adversary with a privileged user combined with a high complexity attack may enable data manipulation. This result may potentially occur via…

  • CVE-2025-26405MedNov 11, 2025
    risk 0.38cvss 5.9epss 0.00

    Improper control of dynamically-managed code resources for some Intel(R) NPU Drivers within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service.…

  • CVE-2025-24840MedAug 12, 2025
    risk 0.38cvss 5.8epss 0.00

    Improper access control for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2024-39758MedMay 13, 2025
    risk 0.38cvss 5.9epss 0.00

    Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 31.0.101.4032 may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2024-41934MedFeb 12, 2025
    risk 0.38cvss 5.9epss 0.00

    Improper access control in some Intel(R) GPA software before version 2024.3 may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2024-33617MedNov 13, 2024
    risk 0.38cvss 5.9epss 0.00

    Insufficient control flow management in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disclosure via network access.

  • CVE-2024-31074MedNov 13, 2024
    risk 0.38cvss 5.9epss 0.01

    Observable timing discrepancy in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disclosure via network access.

  • CVE-2024-28885MedNov 13, 2024
    risk 0.38cvss 5.9epss 0.00

    Observable discrepancy in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disclosure via network access.

  • CVE-2024-25562MedAug 14, 2024
    risk 0.38cvss 5.8epss 0.00

    Improper buffer restrictions in some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2023-48368MedMay 16, 2024
    risk 0.38cvss 5.9epss 0.00

    Improper input validation in Intel(R) Media SDK software all versions may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2023-22662MedMay 16, 2024
    risk 0.38cvss 5.8epss 0.00

    Improper input validation of EpsdSrMgmtConfig in UEFI firmware for some Intel(R) Server Board S2600BP products may allow a privileged user to potentially enable denial of service via local access.

  • CVE-2023-24588MedNov 14, 2023
    risk 0.38cvss 5.9epss 0.00

    Exposure of sensitive information to an unauthorized actor in firmware for some Intel(R) Optane(TM) SSD products may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2023-22663MedNov 14, 2023
    risk 0.38cvss 5.9epss 0.01

    Improper authentication for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.

  • CVE-2023-22448MedNov 14, 2023
    risk 0.38cvss 5.9epss 0.01

    Improper access control for some Intel Unison software may allow a privileged user to potentially enable escalation of privilege via network access.

  • CVE-2023-25771MedMay 10, 2023
    risk 0.38cvss 5.8epss 0.00

    Improper access control for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable denial of service via local access.

  • CVE-2022-30692MedFeb 16, 2023
    risk 0.38cvss 5.9epss 0.01

    Improper conditions check in the Intel(R) SUR software before version 2.4.8902 may allow an unauthenticated user to potentially enable denial of service via network access.

  • CVE-2022-30691MedNov 11, 2022
    risk 0.38cvss 5.9epss 0.00

    Uncontrolled resource consumption in the Intel(R) Support Android application before version 22.02.28 may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2020-0574MedMar 12, 2020
    risk 0.38cvss 5.9epss 0.00

    Improper configuration in block design for Intel(R) MAX(R) 10 FPGA all versions may allow an authenticated user to potentially enable escalation of privilege and information disclosure via physical access.

  • CVE-2018-12130MedMay 30, 2019
    risk 0.38cvss 5.9epss 0.02

    Microarchitectural Fill Buffer Data Sampling (MFBDS): Fill buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. A list of impacted products can be found…

  • CVE-2014-9920MedMar 14, 2017
    risk 0.38cvss 5.9epss 0.01

    Unauthorized execution of binary vulnerability in McAfee (now Intel Security) McAfee Application Control (MAC) 6.0.0 before hotfix 9726, 6.0.1 before hotfix 9068, 6.1.0 before hotfix 692, 6.1.1 before hotfix 399, 6.1.2 before hotfix 426, and 6.1.3 before hotfix 357 and earlier…

  • CVE-2025-27712MedNov 11, 2025
    risk 0.37cvss 5.7epss 0.00

    Improper neutralization for some Intel(R) Neural Compressor software before version v3.4 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable escalation…

  • CVE-2025-26472MedAug 12, 2025
    risk 0.37cvss 5.7epss 0.00

    Uncontrolled resource consumption for some Edge Orchestrator software before version 24.11.1 for Intel(R) Tiber(TM) Edge Platform may allow an authenticated user to potentially enable denial of service via adjacent access.

  • CVE-2025-20624MedMay 13, 2025
    risk 0.37cvss 5.7epss 0.00

    Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an authenticated user to potentially enable information disclosure via adjacent access.

  • CVE-2025-20047MedMay 13, 2025
    risk 0.37cvss 5.7epss 0.00

    Improper locking in the Intel(R) Integrated Connectivity I/O interface (CNVi) for some Intel(R) Core™ Ultra Processors may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

  • CVE-2025-20022MedMay 13, 2025
    risk 0.37cvss 5.7epss 0.00

    Insufficient control flow management for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow a privileged user to potentially enable information disclosure via adjacent access.

  • CVE-2024-28049MedNov 13, 2024
    risk 0.37cvss 5.7epss 0.00

    Improper input validation in firmware for some Intel(R) PROSet/Wireless Software and Intel(R) Killer(TM) Wi-Fi wireless products before version 23.40 may allow an unauthenticated user to enable denial of service via adjacent access.

  • CVE-2023-40067MedAug 14, 2024
    risk 0.37cvss 5.7epss 0.00

    Unchecked return value in firmware for some Intel(R) CSME may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

  • CVE-2023-49614MedMay 16, 2024
    risk 0.37cvss 5.7epss 0.00

    Out of bounds write in firmware for some Intel(R) FPGA products before version 2.9.0 may allow escalation of privilege and information disclosure.

  • CVE-2023-28401MedNov 14, 2023
    risk 0.37cvss 5.7epss 0.00

    Out-of-bounds write in some Intel(R) Arc(TM) & Iris(R) Xe Graphics - WHQL - Windows drivers before version 31.0.101.4255 may allow authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-28736MedAug 11, 2023
    risk 0.37cvss 5.7epss 0.00

    Buffer overflow in some Intel(R) SSD Tools software before version mdadm-4.2-rc2 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-38787MedMay 10, 2023
    risk 0.37cvss 5.7epss 0.00

    Improper input validation in firmware for some Intel(R) FPGA products before version 2.7.0 Hotfix may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-34841MedFeb 16, 2023
    risk 0.37cvss 5.7epss 0.00

    Improper buffer restrictions in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-27170MedFeb 16, 2023
    risk 0.37cvss 5.7epss 0.00

    Protection mechanism failure in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-29901MedJul 12, 2022
    risk 0.37cvss 5.6epss 0.05

    Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mitigation in the kernel to leak arbitrary data. An attacker with unprivileged user access can hijack return instructions to achieve arbitrary speculative code…

Page 32 of 48