Skip to content
Noroxi

Intel records

1,868 published records for vendor intel.

Researcher profile

Entered KEV
4 · 0.2%
Weaponized
5 · 0.3%
Pre-auth RCE
15
With a fix record
9.6%
Median publish → KEV
1118 days

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

1,868 records
  • Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints

    CriticalCVSS 10.0KEVWeaponizedEPSS 100%

    apache · log4jDec 10, 2021

  • An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (A

    CriticalCVSS 9.8KEVWeaponizedEPSS 92%

    intel · active management technology firmwareMay 2, 2017

  • Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attack

    CriticalCVSS 9.0KEVWeaponizedEPSS 100%

    apache · log4jDec 14, 2021

  • CVE-2015-2291
    64This week

    (1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to c

    HighCVSS 7.8KEVWeaponizedEPSS 9%

    intel · ethernet diagnostics driver iqvw32.sysAug 9, 2017

  • The IPMI 2.0 specification supports RMCP+ Authenticated Key-Exchange Protocol (RAKP) authentication, which allows remote attackers to obtain

    HighCVSS 7.5WeaponizedEPSS 79%

    oracle · fujitsu m10 firmwareJul 8, 2013

  • Improper input validation in some Intel(R) Neural Compressor software before version 2.5.0 may allow an unauthenticated user to potentially

    CriticalCVSS 10.0Proof of conceptEPSS 36%

    May 16, 2024

  • Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an at

    MediumCVSS 5.6Proof of conceptEPSS 94%

    intel · atom cJan 4, 2018

  • Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information

    MediumCVSS 5.6Proof of conceptEPSS 84%

    intel · atom cJan 4, 2018

  • Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information

    MediumCVSS 5.6Proof of conceptEPSS 74%

    intel · atom cJan 4, 2018

  • NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the NetStructure

    CriticalCVSS 10.0Proof of conceptEPSS 6%

    intel · netstructure 7110May 8, 2000

  • Integer underflow in the e1000_clean_rx_irq function in drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel before 2.6.30

    HighCVSS 7.8No exploitEPSS 34%

    linux · kernelJun 4, 2009

  • Stack-based buffer overflow in "dnsproxy.c" in connman 1.34 and earlier allows remote attackers to cause a denial of service (crash) or exec

    CriticalCVSS 9.8Proof of conceptEPSS 6%

    intel · connmanAug 29, 2017

  • Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior mem

    MediumCVSS 5.5Proof of conceptEPSS 61%

    intel · atom cMay 22, 2018

  • Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an u

    CriticalCVSS 9.8No exploitEPSS 4%

    intel · active management technology firmwareJun 15, 2020

  • Use after free in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unaut

    CriticalCVSS 9.8No exploitEPSS 3%

    intel · active management technology firmwareJun 15, 2020

  • In ConnMan through 1.41, remote attackers able to send HTTP requests to the gweb component are able to exploit a heap-based buffer overflow

    CriticalCVSS 9.8No exploitEPSS 3%

    intel · connmanAug 3, 2022

  • NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contain a vulnerability in the AMI BMC firmware in which software

    CriticalCVSS 9.8No exploitEPSS 3%

    nvidia · dgx-1Oct 29, 2020

  • ConnMan (aka Connection Manager) 1.30 through 1.39 has a stack-based buffer overflow in uncompress in dnsproxy.c via NAME, RDATA, or RDLENGT

    CriticalCVSS 9.8No exploitEPSS 3%

    intel · connection managerJun 9, 2021

  • A logic issue in Intel Unite(R) Client for Android prior to version 4.0 may allow a remote attacker to potentially enable escalation of priv

    CriticalCVSS 9.8No exploitEPSS 2%

    intel · uniteMay 17, 2019

  • Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an unprivileged user to

    CriticalCVSS 9.8No exploitEPSS 2%

    intel · bmc firmwareSep 12, 2018

  • Insufficient session validation in the service API for Intel(R) RWC3 version 4.186 and before may allow an unauthenticated user to potential

    CriticalCVSS 9.8No exploitEPSS 2%

    intel · raid web console 3Jun 13, 2019

  • Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79,

    CriticalCVSS 9.8No exploitEPSS 2%

    intel · standard manageabilitySep 10, 2020

  • Buffer overflow in subsystem in Intel(R) CSME 12.0.0 through 12.0.34 may allow an unauthenticated user to potentially enable escalation of p

    CriticalCVSS 9.8No exploitEPSS 2%

    intel · converged security management engine firmwareMay 17, 2019

  • Authentication bypass in the Intel Unite(R) solution versions 3.2 through 3.3 may allow an unauthenticated user to potentially enable escala

    CriticalCVSS 9.8No exploitEPSS 2%

    intel · uniteFeb 18, 2019

  • Logic issue in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potent

    CriticalCVSS 9.8No exploitEPSS 2%

    intel · active management technology firmwareDec 18, 2019