VYPR

Vendor CVEs

Intel

All CVEs

2,357 total · sorted by risk
  • CVE-2018-12189MedMar 14, 2019
    risk 0.29cvss 4.4epss 0.00

    Unhandled exception in Content Protection subsystem in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before 3.1.60 or 4.0.10 may allow privileged user to potentially modify data via local access.

  • CVE-2019-0112MedFeb 18, 2019
    risk 0.29cvss 4.4epss 0.00

    Improper flow control in crypto routines for Intel(R) Data Center Manager SDK before version 5.0.2 may allow a privileged user to potentially enable a denial of service via local access.

  • CVE-2018-12167MedJan 10, 2019
    risk 0.29cvss 4.4epss 0.00

    Firmware update routine in bootloader for Intel(R) Optane(TM) SSD DC P4800X before version E2010435 may allow a privileged user to potentially enable a denial of service via local access.

  • CVE-2018-12166MedJan 10, 2019
    risk 0.29cvss 4.4epss 0.00

    Insufficient write protection in firmware for Intel(R) Optane(TM) SSD DC P4800X before version E2010435 may allow a privileged user to potentially enable a denial of service via local access.

  • CVE-2017-5698MedSep 5, 2017
    risk 0.29cvss 4.4epss 0.00

    Intel Active Management Technology, Intel Standard Manageability, and Intel Small Business Technology firmware versions 11.0.25.3001 and 11.0.26.3000 anti-rollback will not prevent upgrading to firmware version 11.6.x.1xxx which is vulnerable to CVE-2017-5689 and can be…

  • CVE-2016-8006MedJan 5, 2017
    risk 0.29cvss 4.4epss 0.00

    Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information including user passwords…

  • CVE-2025-35987MedAug 11, 2026
    risk 0.28cvss epss 0.00

    Omission of security-relevant information for some Intel(R) Software Guard Extensions Data Center Attestation Primitives within Ring 0: Kernel may allow a denial of service. Authorized adversary with a privileged user combined with a high complexity attack may enable data…

  • CVE-2025-31938MedAug 11, 2026
    risk 0.28cvss epss 0.00

    Insufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(R) TDX may allow an information disclosure. Authorized adversary with an authenticated user combined with a high complexity attack may enable data exposure.…

  • CVE-2025-22844MedMay 13, 2025
    risk 0.28cvss 4.3epss 0.00

    Improper access control for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an unauthenticated user to potentially enable information disclosure via adjacent access.

  • CVE-2025-20097MedFeb 12, 2025
    risk 0.28cvss 4.3epss 0.00

    Uncaught exception in OpenBMC Firmware for the Intel(R) Server M50FCP Family and Intel(R) Server D50DNP Family before version R01.02.0002 may allow an authenticated user to potentially enable denial of service via network access.

  • CVE-2024-33624MedNov 13, 2024
    risk 0.28cvss 4.3epss 0.00

    Improper input validation for some Intel(R) PROSet/Wireless WiFi software for Windows before version 23.60 may allow an unauthenticated user to potentially enable denial of service via network access.

  • CVE-2024-21844MedAug 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Integer overflow in firmware for some Intel(R) CSME may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-35123MedAug 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Uncaught exception in OpenBMC Firmware for some Intel(R) Server Platforms before versions egs-1.14-0, bhs-0.27 may allow an authenticated user to potentially enable denial of service via network access.

  • CVE-2023-40536MedMay 16, 2024
    risk 0.28cvss 4.3epss 0.00

    Race condition for some some Intel(R) PROSet/Wireless WiFi software for Windows before version 23.20 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-38417MedMay 16, 2024
    risk 0.28cvss 4.3epss 0.00

    Improper input validation for some Intel(R) PROSet/Wireless WiFi software before version 23.20 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-35061MedFeb 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Improper initialization for the Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow an unauthenticated user to potentially enable information disclosure via adjacent access.

  • CVE-2023-34983MedFeb 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Improper input validation for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-32651MedFeb 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Improper validation of specified type of input for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-32644MedFeb 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Protection mechanism failure for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-32642MedFeb 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Insufficient adherence to expected conventions for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-26586MedFeb 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Uncaught exception for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-24463MedFeb 14, 2024
    risk 0.28cvss 4.3epss 0.00

    Improper input validation in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an unauthenticated user to potentially enable information disclosure via adjacent access.

  • CVE-2023-31203MedNov 14, 2023
    risk 0.28cvss 4.3epss 0.01

    Improper input validation in some OpenVINO Model Server software before version 2022.3 for Intel Distribution of OpenVINO toolkit may allow an unauthenticated user to potentially enable denial of service via network access.

  • CVE-2022-36351MedAug 11, 2023
    risk 0.28cvss 4.3epss 0.01

    Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2022-27234MedFeb 16, 2023
    risk 0.28cvss 4.3epss 0.00

    Server-side request forgery in the CVAT software maintained by Intel(R) before version 2.0.1 may allow an authenticated user to potentially enable information disclosure via network access.

  • CVE-2022-29486MedNov 11, 2022
    risk 0.28cvss 4.3epss 0.01

    Improper buffer restrictions in the Hyperscan library maintained by Intel(R) all versions downloaded before 04/29/2022 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

  • CVE-2022-26508MedNov 11, 2022
    risk 0.28cvss 4.3epss 0.01

    Improper authentication in the Intel(R) SDP Tool before version 3.0.0 may allow an unauthenticated user to potentially enable information disclosure via network access.

  • CVE-2022-26047MedNov 11, 2022
    risk 0.28cvss 4.3epss 0.00

    Improper input validation for some Intel(R) PROSet/Wireless WiFi, Intel vPro(R) CSME WiFi and Killer(TM) WiFi products may allow unauthenticated user to potentially enable denial of service via local access.

  • CVE-2019-0094MedMay 17, 2019
    risk 0.28cvss 4.3epss 0.00

    Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable denial of service via adjacent network access.

  • CVE-2026-20765MedAug 11, 2026
    risk 0.27cvss 4.2epss 0.00

    Incorrect comparison for some Intel(R) TDX Guest software before version 0.3.1 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege. This…

  • CVE-2026-20763MedAug 11, 2026
    risk 0.27cvss 4.2epss 0.00

    Incorrect calculation for some Intel(R) TDX Guest software before version 0.3.1 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege. This…

  • CVE-2025-32467MedFeb 10, 2026
    risk 0.27cvss 4.1epss 0.00

    Use of uninitialized variable for some TDX Module before version tdx1.5 within Ring 0: Hypervisor may allow an information disclosure. Authorized adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur…

  • CVE-2025-27940MedFeb 10, 2026
    risk 0.27cvss 4.1epss 0.00

    Out-of-bounds read for some TDX Module before version tdx1.5 within Ring 0: Hypervisor may allow an information disclosure. Software side channel adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur…

  • CVE-2025-27708MedFeb 10, 2026
    risk 0.27cvss 4.1epss 0.00

    Out-of-bounds read in the firmware for some Intel(R) Converged Security and Management Engine (CSME) Firmware (FW) within Ring 0: Kernel may allow an information disclosure. System software adversary with a privileged user combined with a low complexity attack may enable data…

  • CVE-2025-27572MedFeb 10, 2026
    risk 0.27cvss 4.1epss 0.00

    Exposure of sensitive information during transient execution for some TDX within Ring 0: Hypervisor may allow an information disclosure. Authorized adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur…

  • CVE-2025-20044MedAug 12, 2025
    risk 0.27cvss 4.1epss 0.00

    Improper locking for some Intel(R) TDX Module firmware before version 1.5.13 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2025-21100MedMay 13, 2025
    risk 0.27cvss 4.1epss 0.00

    Improper initialization in the UEFI firmware for the Intel(R) Server D50DNP and M50FCP boards may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2025-20009MedMay 13, 2025
    risk 0.27cvss 4.1epss 0.00

    Improper input validation in the UEFI firmware GenerationSetup module for the Intel(R) Server D50DNP and M50FCP boards may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2024-21808MedNov 13, 2024
    risk 0.27cvss 4.2epss 0.00

    Improper buffer restrictions in some Intel(R) VPL software before version 24.1.4 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-27301MedFeb 14, 2024
    risk 0.27cvss 4.2epss 0.00

    Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-40540MedNov 14, 2023
    risk 0.27cvss 4.1epss 0.00

    Non-Transparent Sharing of Microarchitectural Resources in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2023-25182MedAug 11, 2023
    risk 0.27cvss 4.2epss 0.00

    Uncontrolled search path element in the Intel(R) Unite(R) Client software for Mac before version 4.2.11 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-43505MedAug 11, 2023
    risk 0.27cvss 4.1epss 0.00

    Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access.

  • CVE-2022-38087MedMay 10, 2023
    risk 0.27cvss 4.1epss 0.00

    Exposure of resource to wrong sphere in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2022-27180MedMay 10, 2023
    risk 0.27cvss 4.2epss 0.00

    Uncontrolled search path in the Intel(R) MacCPUID software before version 3.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-34864MedFeb 16, 2023
    risk 0.27cvss 4.2epss 0.00

    Out-of-bounds read in the Intel(R) Trace Analyzer and Collector software before version 2021.5 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2021-33079MedSep 20, 2022
    risk 0.27cvss 4.1epss 0.00

    Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged user to potentially enable information disclosure via local access.

  • CVE-2026-20917MedAug 11, 2026
    risk 0.26cvss epss 0.00

    Exposure of sensitive information caused by incorrect data forwarding during transient execution for some Intel(R) Processors within Ring 0: Hypervisor and Kernel may allow information disclosure. System software adversary with a privileged user combined with a high complexity…

  • CVE-2026-20901MedAug 11, 2026
    risk 0.26cvss epss 0.00

    Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via…

  • CVE-2026-20712MedAug 11, 2026
    risk 0.26cvss epss 0.00

    Incomplete cleanup in some UEFI firmware for some Intel(R) reference platforms within UEFI may allow an information disclosure. System software adversary with a privileged user combined with a low complexity attack may enable data exposure. This result may potentially occur via…

Page 43 of 48