|
210761
|
5.3 |
MEDIUM
Network
|
intel
|
active_management_technology_firmware
|
Improper input validation in Intel(R) AMT versions before 11.8.76, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.
|
CWE-20
Improper Input Validation
|
CVE-2020-0535
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210762
|
7.5 |
HIGH
Network
|
intel
|
converged_security_management_engine_firmware
|
Improper input validation in the DAL subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an unauthenticated user to potentially enable denial of service via ne…
|
CWE-20
Improper Input Validation
|
CVE-2020-0534
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210763
|
6.7 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware
|
Reversible one-way hash in Intel(R) CSME versions before 11.8.76, 11.12.77 and 11.22.77 may allow a privileged user to potentially enable escalation of privilege, denial of service or information dis…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2020-0533
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210764
|
7.1 |
HIGH
Adjacent
|
intel
|
active_management_technology_firmware
|
Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable denial of service or informatio…
|
CWE-20
Improper Input Validation
|
CVE-2020-0532
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210765
|
6.5 |
MEDIUM
Network
|
intel
|
active_management_technology_firmware
|
Improper input validation in Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an authenticated user to potentially enable information disclosure via network access.
|
CWE-20
Improper Input Validation
|
CVE-2020-0531
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210766
|
4.4 |
MEDIUM
Local
|
intel
|
ssd_d3-s4510_firmware ssd_dc_p4510_firmware ssd_dc_p4610_firmware ssd_dc_p4618_firmware ssd_dc_p4511_firmware
|
Insufficient control flow management in firmware for some Intel(R) Data Center SSDs may allow a privileged user to potentially enable information disclosure via local access.
|
NVD-CWE-noinfo
|
CVE-2020-0527
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210767
|
7.8 |
HIGH
Local
|
intel
|
core_i5-7600k_firmware core_i5-7600t_firmware core_i5-7600_firmware core_i5-7500_firmware core_i5-7500t_firmware core_i5-7442eq_firmware core_i5-7440hq_firmware core_i5-7440eq_fi…
|
Improper initialization in BIOS firmware for 8th, 9th and 10th Generation Intel(R) Core(TM) Processor families may allow an unauthenticated user to potentially enable escalation of privilege via loca…
|
CWE-665
Improper Initialization
|
CVE-2020-0529
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210768
|
7.8 |
HIGH
Local
|
intel
|
core_i5-7600k_firmware core_i5-7600t_firmware core_i5-7600_firmware core_i5-7500_firmware core_i5-7500t_firmware core_i5-7442eq_firmware core_i5-7440hq_firmware core_i5-7440eq_fi…
|
Improper buffer restrictions in BIOS firmware for 7th, 8th, 9th and 10th Generation Intel(R) Core(TM) Processor families may allow an authenticated user to potentially enable escalation of privilege …
|
NVD-CWE-noinfo
|
CVE-2020-0528
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210769
|
7.8 |
HIGH
Local
|
google
|
android
|
In main of main.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is …
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2020-0233
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210770
|
7.8 |
HIGH
Local
|
google
|
android
|
In onCreate of SliceDeepLinkSpringBoard.java there is a possible insecure Intent. This could lead to local elevation of privilege with no additional execution privileges needed. User interaction is n…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-0219
|
2024-11-21 13:53 |
2020-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|