|
196081
|
6.7 |
MEDIUM
Local
|
intel
|
converged_security_and_manageability_engine
|
Improper input validation in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow a privileged user to potentially enable escalation of privilege via…
|
CWE-20
Improper Input Validation
|
CVE-2020-8756
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196082
|
6.4 |
MEDIUM
Physics
|
intel
|
converged_security_and_management_engine server_platform_services
|
Race condition in subsystem for Intel(R) CSME versions before 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 may allow an unauthenticated user to potentially en…
|
CWE-362
Race Condition
|
CVE-2020-8755
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196083
|
7.5 |
HIGH
Network
|
intel netapp
|
active_management_technology_firmware cloud_backup standard_manageability
|
Out-of-bounds read in subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable information dis…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-8754
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196084
|
7.5 |
HIGH
Network
|
intel
|
active_management_technology_firmware standard_manageability
|
Out-of-bounds read in DHCP subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable informatio…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-8753
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196085
|
9.8 |
CRITICAL
Network
|
intel netapp
|
active_management_technology_firmware cloud_backup standard_manageability
|
Out-of-bounds write in IPv6 subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow an unauthenticated user to potentially enable escalation o…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-8752
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196086
|
4.6 |
MEDIUM
Physics
|
intel
|
converged_security_and_manageability_engine trusted_execution_technology
|
Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, Intel(R) TXE versions before 3.1.80 may allow an unauthenticated user to potentially enable information di…
|
NVD-CWE-noinfo
|
CVE-2020-8751
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196087
|
7.8 |
HIGH
Local
|
intel
|
trusted_execution_engine
|
Use after free in Kernel Mode Driver for Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-416
Use After Free
|
CVE-2020-8750
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196088
|
8.8 |
HIGH
Adjacent
|
intel netapp
|
active_management_technology_firmware cloud_backup
|
Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via a…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-8749
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196089
|
9.1 |
CRITICAL
Network
|
intel netapp
|
active_management_technology_firmware cloud_backup
|
Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable information disclosure and/or…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-8747
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196090
|
6.5 |
MEDIUM
Adjacent
|
intel netapp
|
active_management_technology_firmware cloud_backup
|
Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable denial of service via adjacent …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-8746
|
2024-11-21 14:39 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|