VYPR

Vendor CVEs

Intel

All CVEs

2,357 total · sorted by risk
  • CVE-2026-32791MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Untrusted search path for some Intel(R) Performance Counter Monitor (Intel(R) PCM) before version tag 202604 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack…

  • CVE-2026-32788MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Uncontrolled search path for some Approximate Bayesian Inference Framework before version on commit #484c949 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may…

  • CVE-2026-32677MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Path traversal for some gaudi-container-runtime before version 1.24.0 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable escalation of privilege. This…

  • CVE-2026-28757MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some Intel(R) Workload Services Framework software within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable escalation of…

  • CVE-2026-28707MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some LLM-on-Ray before version 1.0 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege. This result…

  • CVE-2026-28700MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Uncontrolled search path for some EquiTriton before version f5ddbb5 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege. This result…

  • CVE-2026-24693MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some Intel(R) oneCCL Bindings for PyTorch before version v2.8.0 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable…

  • CVE-2026-21400MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some Intel(R) AI Reference Models before version v3.4.1 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable escalation of…

  • CVE-2026-21387MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some Intel(R) LLM Library for PyTorch within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege. This…

  • CVE-2026-20906MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some Intel(R) Neural Compressor software before version v3.6 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable escalation…

  • CVE-2026-20903MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some Intel(R) AI Containers before version v0.4.0 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege.…

  • CVE-2026-20799MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Untrusted search path for some Battery Life Diagnostic Tool software before version 2.9.0 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable…

  • CVE-2026-20770MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some Cluster Management Toolkit for Kubernetes software before version v0.8.5 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable…

  • CVE-2026-20755MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some LLM Scaler software within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege. This result may…

  • CVE-2026-20728MedAug 11, 2026
    risk 0.35cvss epss 0.00

    Protection mechanism failure for some Intel Extension for TensorFlow software before version 2.15.0.3 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable…

  • CVE-2026-20718MedMay 12, 2026
    risk 0.35cvss epss 0.00

    Incorrect default permissions for some Intel(R) NPU Driver software installers before version 32.0.100.4511 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack…

  • CVE-2025-36515MedMay 12, 2026
    risk 0.35cvss epss 0.00

    Uncontrolled search path for some AI Playground software before version 3.0.0 alpha within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable escalation of…

  • CVE-2025-35969MedMay 12, 2026
    risk 0.35cvss epss 0.00

    Uncontrolled search path for some Intel(R) Server Firmware Update Utility Software before version 16.0.12. within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a high complexity attack may…

  • CVE-2024-28169MedNov 13, 2024
    risk 0.35cvss 5.4epss 0.00

    Cleartext transmission of sensitive information for some BigDL software maintained by Intel(R) before version 2.5.0 may allow an authenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-39412MedNov 14, 2023
    risk 0.35cvss 5.4epss 0.00

    Cross-site request forgery in some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.

  • CVE-2023-39228MedNov 14, 2023
    risk 0.35cvss 5.3epss 0.01

    Improper access control for some Intel Unison software may allow an unauthenticated user to potentially enable denial of service via network access.

  • CVE-2023-39221MedNov 14, 2023
    risk 0.35cvss 5.4epss 0.00

    Improper access control for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.

  • CVE-2023-44216MedSep 27, 2023
    risk 0.35cvss 5.3epss 0.02

    PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that enables cross-origin pixel-stealing attacks against feTurbulence and feBlend in the SVG Filter specification, aka a GPU.zip issue. For example, attackers can…

  • CVE-2022-44610MedMay 10, 2023
    risk 0.35cvss 5.4epss 0.01

    Improper authentication in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via network access.

  • CVE-2022-41979MedMay 10, 2023
    risk 0.35cvss 5.4epss 0.01

    Protection mechanism failure in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via network access.

  • CVE-2022-27639MedNov 11, 2022
    risk 0.35cvss 5.4epss 0.00

    Incomplete cleanup in some Intel(R) XMM(TM) 7560 Modem software before version M2_7560_R_01.2146.00 may allow a privileged user to potentially enable escalation of privilege via adjacent access.

  • CVE-2021-33120MedFeb 9, 2022
    risk 0.35cvss 5.4epss 0.01

    Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access.

  • CVE-2020-26555MedMay 24, 2021
    risk 0.35cvss 5.4epss 0.01

    Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spoof the BD_ADDR of the peer device to complete pairing without knowledge of the PIN.

  • CVE-2020-26139MedMay 11, 2021
    risk 0.35cvss 5.3epss 0.06

    An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. This might be abused in projected Wi-Fi networks to launch denial-of-service attacks against…

  • CVE-2020-8674MedJun 15, 2020
    risk 0.35cvss 5.3epss 0.02

    Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64 and 14.0.33 may allow an unauthenticated user to potentially enable information disclosure via network access.

  • CVE-2020-0535MedJun 15, 2020
    risk 0.35cvss 5.3epss 0.02

    Improper input validation in Intel(R) AMT versions before 11.8.76, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.

  • CVE-2019-11174MedNov 14, 2019
    risk 0.35cvss 5.3epss 0.01

    Insufficient access control in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure via network access.

  • CVE-2019-11172MedNov 14, 2019
    risk 0.35cvss 5.3epss 0.01

    Out of bound read in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure via network access.

  • CVE-2018-3658MedSep 12, 2018
    risk 0.35cvss 5.3epss 0.03

    Multiple memory leaks in Intel AMT in Intel CSME firmware versions before 12.0.5 may allow an unauthenticated user with Intel AMT provisioned to potentially cause a partial denial of service via network access.

  • CVE-2025-31944MedFeb 10, 2026
    risk 0.34cvss 5.3epss 0.00

    Race condition for some TDX Module before version tdx1.5 within Ring 0: Hypervisor may allow a denial of service. Authorized adversary with a privileged user combined with a high complexity attack may enable denial of service. This result may potentially occur via local access…

  • CVE-2025-27535MedFeb 10, 2026
    risk 0.34cvss 5.3epss 0.00

    Exposed ioctl with insufficient access control in the firmware for some Intel(R) Ethernet Connection E825-C. before version NVM ver. 3.84 within Ring 0: Bare Metal OS may allow a denial of service. System software adversary with a privileged user combined with a high complexity…

  • CVE-2025-20077MedAug 12, 2025
    risk 0.34cvss 5.3epss 0.00

    Missing release of memory after effective lifetime in the UEFI OobRasMmbiHandlerDriver module for some Intel(R) reference server platforms may allow a privileged user to enable denial of service via local access.

  • CVE-2025-20034MedMay 13, 2025
    risk 0.34cvss 5.3epss 0.00

    Improper input validation in the BackupBiosUpdate UEFI firmware SmiVariable driver for the Intel(R) Server D50DNP and M50FCP boards before version R01.02.0003 may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2024-43101MedMay 13, 2025
    risk 0.34cvss 5.3epss 0.00

    Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver software before version 31.0.101.4255 may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2024-31157MedFeb 12, 2025
    risk 0.34cvss 5.3epss 0.00

    Improper initialization in UEFI firmware OutOfBandXML module in some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2024-31068MedFeb 12, 2025
    risk 0.34cvss 5.3epss 0.00

    Improper Finite State Machines (FSMs) in Hardware Logic for some Intel(R) Processors may allow privileged user to potentially enable denial of service via local access.

  • CVE-2024-28047MedFeb 12, 2025
    risk 0.34cvss 5.3epss 0.00

    Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2024-21859MedFeb 12, 2025
    risk 0.34cvss 5.3epss 0.00

    Improper buffer restrictions in the UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2023-48366MedFeb 12, 2025
    risk 0.34cvss 5.3epss 0.00

    Race condition in some Intel(R) System Security Report and System Resources Defense firmware may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2024-39285MedNov 13, 2024
    risk 0.34cvss 5.3epss 0.00

    Improper access control in UEFI firmware in some Intel(R) Server M20NTP Family may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2024-23919MedNov 13, 2024
    risk 0.34cvss 5.3epss 0.00

    Improper buffer restrictions in some Intel(R) Graphics software may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2024-34545MedSep 16, 2024
    risk 0.34cvss 5.2epss 0.00

    Improper input validation in some Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable information disclosure via adjacent access.

  • CVE-2024-24968MedSep 16, 2024
    risk 0.34cvss 5.3epss 0.00

    Improper finite state machines (FSMs) in hardware logic in some Intel(R) Processors may allow an privileged user to potentially enable a denial of service via local access.

  • CVE-2024-23984MedSep 16, 2024
    risk 0.34cvss 5.3epss 0.00

    Observable discrepancy in RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2023-43753MedSep 16, 2024
    risk 0.34cvss 5.3epss 0.00

    Improper conditions check in some Intel(R) Processors with Intel(R) SGX may allow a privileged user to potentially enable information disclosure via local access.

Page 38 of 48