Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
trusted execution engine firmware vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv3
CVE-2020-0566
Improper Access Control in subsystem for Intel(R) TXE versions prior to 3.175 and 4.0.25 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Intel Trusted Execution Engine Firmware
7.8
CVSSv3
CVE-2019-11097
Improper directory permissions in the installer for Intel(R) Management Engine Consumer Driver for Windows prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45,13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow an authenticated user to potentially enable escalation o...
Intel Trusted Execution Engine Firmware
7.8
CVSSv3
CVE-2017-5710
Multiple privilege escalations in kernel in Intel Trusted Execution Engine Firmware 3.0 allows unauthorized process to access privileged content via unspecified vector.
Intel Trusted Execution Engine Firmware 3.0
7.8
CVSSv3
CVE-2017-5707
Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrary code.
Intel Trusted Execution Engine Firmware 3.0
1 Article
6.2
CVSSv3
CVE-2018-12199
Buffer overflow in an OS component in Intel CSME prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 and Intel TXE version prior to 3.1.60 or 4.0.10 may allow a privileged user to potentially execute arbitrary code via physical access.
Intel Trusted Execution Engine Firmware
Intel Converged Security Management Engine Firmware
7.8
CVSSv3
CVE-2019-0086
Insufficient access control vulnerability in Dynamic Application Loader software for Intel(R) CSME prior to 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) TXE 3.1.65, 4.0.15 may allow an unprivileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
4.4
CVSSv3
CVE-2019-0168
Insufficient input validation in the subsystem for Intel(R) CSME prior to 11.8.70, 12.0.45 and 13.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable information disclosure via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
7.8
CVSSv3
CVE-2019-11104
Insufficient input validation in MEInfo software for Intel(R) CSME prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow an authenticated user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
4.4
CVSSv3
CVE-2019-11101
Insufficient input validation in the subsystem for Intel(R) CSME prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable information disclosure via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
6.7
CVSSv3
CVE-2019-11106
Insufficient session validation in the subsystem for Intel(R) CSME prior to 11.8.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
injection
CVE-2024-30983
CVE-2023-4235
CVE-2024-21338
privilege
encryption
CVE-2023-4232
CVE-2024-31497
CVE-2024-32341
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »