|
247901
|
6.7 |
MEDIUM
Local
|
intel
|
platform_sample_firmware silicon_reference_firmware
|
Buffer overflow vulnerability in Platform Sample / Silicon Reference firmware for 8th Generation Intel(R) Core Processor, 7th Generation Intel(R) Core Processor, Intel(R) Pentium(R) Silver J5005 Proc…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12201
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247902
|
6.7 |
MEDIUM
Local
|
intel
|
capability_licensing_service
|
Insufficient access control in Intel(R) Capability Licensing Service before version 1.50.638.1 may allow an unprivileged user to potentially escalate privileges via local access.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-12200
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247903
|
6.2 |
MEDIUM
Physics
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Buffer overflow in an OS component in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 and Intel TXE version before 3.1.60 or 4.0.10 may allow a privileged user to potentially execut…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12199
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247904
|
6.0 |
MEDIUM
Local
|
intel
|
server_platform_services_firmware
|
Insufficient input validation in Intel(R) Server Platform Services HECI subsystem before version SPS_E5_04.00.04.393.0 may allow privileged user to potentially cause a denial of service via local acc…
|
CWE-20
Improper Input Validation
|
CVE-2018-12198
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247905
|
6.7 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware
|
Insufficient input validation in Intel(R) AMT in Intel(R) CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow a privileged user to potentially execute arbitrary code via local access.
|
CWE-20
Improper Input Validation
|
CVE-2018-12196
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247906
|
6.8 |
MEDIUM
Physics
|
intel
|
server_platform_services_firmware converged_security_management_engine_firmware
|
Logic bug in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before version SPS_E5_04.00.04.393.0 may allow an unauthenticat…
|
CWE-287
Improper Authentication
|
CVE-2018-12192
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247907
|
7.6 |
HIGH
Physics
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware server_platform_services_firmware
|
Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before versions 4.00.04.383 or SPS 4.01.02.174, or Intel(R) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-12191
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247908
|
6.7 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Insufficient input validation in Intel(r) CSME subsystem before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel(r) TXE before 3.1.60 or 4.0.10 may allow a privileged user to potentially enab…
|
CWE-20
Improper Input Validation
|
CVE-2018-12190
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247909
|
4.4 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Unhandled exception in Content Protection subsystem in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before 3.1.60 or 4.0.10 may allow privileged user to potentially …
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2018-12189
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247910
|
4.6 |
MEDIUM
Physics
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Insufficient input validation in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before version 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially modify…
|
CWE-20
Improper Input Validation
|
CVE-2018-12188
|
2024-11-21 12:44 |
2019-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|