|
215491
|
7.8 |
HIGH
Local
|
intel
|
converged_security_management_engine_firmware
|
Improper buffer restrictions in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an authenticated user to potentially enable escalation of privilege, inform…
|
NVD-CWE-noinfo
|
CVE-2020-0542
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215492
|
6.7 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware
|
Out-of-bounds write in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow a privileged user to potentially enable escalation of privilege via local access.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-0541
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215493
|
7.5 |
HIGH
Network
|
intel
|
active_management_technology_firmware
|
Insufficiently protected credentials in Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-0540
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215494
|
5.5 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Path traversal in subsystem for Intel(R) DAL software for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32, 14.0.33 and Intel(R) TXE versions before 3.1.75, 4.0.25 may allo…
|
CWE-22
Path Traversal
|
CVE-2020-0539
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215495
|
7.5 |
HIGH
Network
|
intel
|
active_management_technology_firmware
|
Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable denial of service via network a…
|
CWE-20
Improper Input Validation
|
CVE-2020-0538
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215496
|
4.9 |
MEDIUM
Network
|
intel
|
active_management_technology_firmware
|
Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow a privileged user to potentially enable denial of service via network access.
|
CWE-20
Improper Input Validation
|
CVE-2020-0537
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215497
|
7.5 |
HIGH
Network
|
intel
|
converged_security_management_engine_firmware trusted_execution_engine_firmware
|
Improper input validation in the DAL subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32,14.0.33 and Intel(R) TXE versions before 3.1.75 and 4.0.25 may allow an …
|
CWE-20
Improper Input Validation
|
CVE-2020-0536
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215498
|
5.3 |
MEDIUM
Network
|
intel
|
active_management_technology_firmware
|
Improper input validation in Intel(R) AMT versions before 11.8.76, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.
|
CWE-20
Improper Input Validation
|
CVE-2020-0535
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215499
|
7.5 |
HIGH
Network
|
intel
|
converged_security_management_engine_firmware
|
Improper input validation in the DAL subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an unauthenticated user to potentially enable denial of service via ne…
|
CWE-20
Improper Input Validation
|
CVE-2020-0534
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215500
|
6.7 |
MEDIUM
Local
|
intel
|
converged_security_management_engine_firmware
|
Reversible one-way hash in Intel(R) CSME versions before 11.8.76, 11.12.77 and 11.22.77 may allow a privileged user to potentially enable escalation of privilege, denial of service or information dis…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2020-0533
|
2024-11-21 13:53 |
2020-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|