VYPR

Vendor CVEs

Intel

All CVEs

2,357 total · sorted by risk
  • CVE-2017-5700HigOct 11, 2017
    risk 0.55cvss 8.4epss 0.00

    Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator and User passwords via access to password storage.

  • CVE-2026-24911HigAug 11, 2026
    risk 0.54cvss epss 0.00

    Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This…

  • CVE-2026-22887HigAug 11, 2026
    risk 0.54cvss epss 0.00

    Improper buffer restrictions for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This…

  • CVE-2026-20776HigAug 11, 2026
    risk 0.54cvss epss 0.00

    Improper conditions check for some Intel(R) PROSet/Wireless WiFi Software within Ring 2: Device Drivers may allow a denial of service. Network adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This result may potentially…

  • CVE-2026-20741HigAug 11, 2026
    risk 0.54cvss epss 0.00

    Improper access control for some Intel(R) PROSet/Wireless WiFi Software within Ring 2: Device Drivers may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This result may…

  • CVE-2026-20727HigAug 11, 2026
    risk 0.54cvss epss 0.00

    Null pointer dereference for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable denial of service. This result…

  • CVE-2026-20879HigMay 12, 2026
    risk 0.54cvss epss 0.00

    Out-of-bounds write for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ring 1: Device Drivers may allow a denial of service. System software adversary with a privileged user combined with a low complexity attack may enable data…

  • CVE-2026-20751HigMay 12, 2026
    risk 0.54cvss epss 0.00

    Out-of-bounds read for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ring 1: Device Drivers may allow a denial of service. System software adversary with a privileged user combined with a low complexity attack may enable data…

  • CVE-2022-26843HigFeb 16, 2023
    risk 0.54cvss 8.3epss 0.01

    Insufficient visual distinction of homoglyphs presented to user in the Intel(R) oneAPI DPC++/C++ Compiler before version 2022.1 for Intel(R) oneAPI Toolkits before version 2022.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

  • CVE-2022-25987HigFeb 16, 2023
    risk 0.54cvss 8.3epss 0.01

    Improper handling of Unicode encoding in source code to be compiled by the Intel(R) C++ Compiler Classic before version 2021.6 for Intel(R) oneAPI Toolkits before version 2022.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

  • CVE-2018-3624HigApr 5, 2018
    risk 0.54cvss 8.3epss 0.01

    Buffer overflow in ETWS processing module Intel XMM71xx, XMM72xx, XMM73xx, XMM74xx and Sofia 3G/R allows remote attacker to potentially execute arbitrary code via an adjacent network.

  • CVE-2017-5717HigDec 12, 2017
    risk 0.54cvss 7.8epss 0.01

    Type Confusion in Content Protection HECI Service in Intel Graphics Driver allows unprivileged user to elevate privileges via local access.

  • CVE-2026-20715HigAug 11, 2026
    risk 0.53cvss epss 0.00

    Improper input validation in some firmware for some Intel(R) Active Management Technology (Intel(R) AMT) and some Intel(R) Standard Manageability may allow a denial of service. Network adversary with an unauthenticated user combined with a low complexity attack may enable denial…

  • CVE-2025-25210HigFeb 10, 2026
    risk 0.53cvss 8.2epss 0.00

    Improper input validation for some Server Firmware Update Utility(SysFwUpdt) before version 16.0.12 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable escalation…

  • CVE-2025-35971HigNov 11, 2025
    risk 0.53cvss 8.2epss 0.00

    Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.160 within Ring 2: Device Drivers may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable denial…

  • CVE-2025-32091HigNov 11, 2025
    risk 0.53cvss 8.2epss 0.00

    Incorrect default permissions in some firmware for the Intel(R) Arc(TM) B-series GPUs within Ring 1: Device Drivers may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege.…

  • CVE-2025-30255HigNov 11, 2025
    risk 0.53cvss 8.2epss 0.00

    Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.160 within Ring 2: Device Drivers may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable denial…

  • CVE-2025-20093HigAug 12, 2025
    risk 0.53cvss 8.2epss 0.00

    Improper check for unusual or exceptional conditions in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2024-45067HigMay 14, 2025
    risk 0.53cvss 8.2epss 0.00

    Incorrect default permissions in some Intel(R) Gaudi(R) software installers before version 1.18 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2025-20003HigMay 13, 2025
    risk 0.53cvss 8.2epss 0.00

    Improper link resolution before file access ('Link Following') for some Intel(R) Graphics Driver software installers may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2024-38310HigFeb 12, 2025
    risk 0.53cvss 8.2epss 0.00

    Improper access control in some Intel(R) Graphics Driver software installers may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-43758HigFeb 12, 2025
    risk 0.53cvss 8.2epss 0.00

    Improper input validation in UEFI firmware for some Intel(R) processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-31276HigFeb 12, 2025
    risk 0.53cvss 8.2epss 0.00

    Heap-based buffer overflow in BMC Firmware for the Intel(R) Server Board S2600WF, Intel(R) Server Board S2600ST, Intel(R) Server Board S2600BP, before version 02.01.0017 and Intel(R) Server Board M50CYP and Intel(R) Server Board D50TNP before version R01.01.0009 may allow a…

  • CVE-2024-36482HigNov 13, 2024
    risk 0.53cvss 8.2epss 0.00

    Improper input validation in some Intel(R) CIP software before version 2.4.10852 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2024-36282HigNov 13, 2024
    risk 0.53cvss 8.2epss 0.00

    Improper input validation in the Intel(R) Server Board S2600ST Family BIOS and Firmware Update software all versions may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2024-32483HigNov 13, 2024
    risk 0.53cvss 8.2epss 0.00

    Improper access control for some Intel(R) EMA software before version 1.13.1.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-42772HigSep 16, 2024
    risk 0.53cvss 8.2epss 0.00

    Untrusted pointer dereference in UEFI firmware for some Intel(R) reference processors may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2024-28947HigAug 14, 2024
    risk 0.53cvss 8.2epss 0.00

    Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 02.01.0017 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2024-36877HigAug 12, 2024
    risk 0.53cvss 8.2epss 0.01

    Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B460) with firmware 7D25v14, 7D25v17 to 7D25v19, and 7D25v1A to 7D25v1H was discovered to contain a write-what-where condition in the in the SW handler for SMI…

  • CVE-2023-38654HigMay 16, 2024
    risk 0.53cvss 8.2epss 0.00

    Improper input validation for some some Intel(R) PROSet/Wireless WiFi software for Windows before version 23.20 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-24460HigMay 16, 2024
    risk 0.53cvss 8.2epss 0.00

    Incorrect default permissions in some Intel(R) GPA software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-22293HigFeb 14, 2024
    risk 0.53cvss 8.2epss 0.00

    Improper access control in the Intel(R) Thunderbolt(TM) DCH drivers for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-34431HigNov 14, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper input validation in some Intel(R) Server Board BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access

  • CVE-2022-36396HigNov 14, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper access control in some Intel(R) Aptio* V UEFI Firmware Integrator Tools before version iDmiEdit-Linux-5.27.06.0017 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-33945HigNov 14, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper input validation in some Intel(R) Server board and Intel(R) Server System BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-34086HigAug 11, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-32617HigAug 11, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper input validation in some Intel(R) NUC Rugged Kit, Intel(R) NUC Kit and Intel(R) Compute Element BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-28714HigAug 11, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper access control in firmware for some Intel(R) PROSet/Wireless WiFi software for Windows before version 22.220 HF (Hot Fix) may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-28385HigAug 11, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper authorization in the Intel(R) NUC Pro Software Suite for Windows before version 2.0.0.9 may allow a privileged user to potentially enable escalation of privilage via local access.

  • CVE-2023-27515HigAug 11, 2023
    risk 0.53cvss 8.1epss 0.01

    Cross-site scripting (XSS) for the Intel(R) DSA software before version 23.1.9 may allow unauthenticated user to potentially enable escalation of privilege via network access.

  • CVE-2022-46329HigAug 11, 2023
    risk 0.53cvss 8.2epss 0.00

    Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-29887HigAug 11, 2023
    risk 0.53cvss 8.1epss 0.01

    Cross-site Scripting (XSS) in some Intel(R) Manageability Commander software before version 2.3 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

  • CVE-2022-27635HigAug 11, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-25545HigMay 10, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper buffer restrictions in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable escalation of privilege via local access.

  • CVE-2023-22661HigMay 10, 2023
    risk 0.53cvss 8.2epss 0.00

    Buffer overflow in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable escalation of privilege via local access.

  • CVE-2023-22297HigMay 10, 2023
    risk 0.53cvss 8.2epss 0.00

    Access of memory location after end of buffer in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable escalation of privilege via local access.

  • CVE-2022-44619HigMay 10, 2023
    risk 0.53cvss 8.2epss 0.00

    Insecure storage of sensitive information in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-41699HigMay 10, 2023
    risk 0.53cvss 8.2epss 0.00

    Incorrect permission assignment for critical resource in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-40207HigMay 10, 2023
    risk 0.53cvss 8.2epss 0.00

    Improper access control in the Intel(R) SUR software before version 2.4.8989 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-36278HigFeb 16, 2023
    risk 0.53cvss 8.2epss 0.00

    Insufficient control flow management in the Intel(R) Battery Life Diagnostic Tool software before version 2.2.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

Page 4 of 48