Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
intel converged security management engine firmware vulnerabilities and exploits
(subscribe to this query)
409
VMScore
CVE-2020-0541
Out-of-bounds write in subsystem for Intel(R) CSME versions prior to 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Converged Security Management Engine Firmware 14.5.11
409
VMScore
CVE-2020-0542
Improper buffer restrictions in subsystem for Intel(R) CSME versions prior to 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an authenticated user to potentially enable escalation of privilege, information disclosure or denial of service via local access.
Intel Converged Security Management Engine Firmware
Intel Converged Security Management Engine Firmware 14.5.11
445
VMScore
CVE-2020-0534
Improper input validation in the DAL subsystem for Intel(R) CSME versions prior to 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an unauthenticated user to potentially enable denial of service via network access.
Intel Converged Security Management Engine Firmware
Intel Converged Security Management Engine Firmware 14.5.11
187
VMScore
CVE-2019-11101
Insufficient input validation in the subsystem for Intel(R) CSME prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable information disclosure via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
409
VMScore
CVE-2019-11106
Insufficient session validation in the subsystem for Intel(R) CSME prior to 11.8.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
445
VMScore
CVE-2020-0536
Improper input validation in the DAL subsystem for Intel(R) CSME versions prior to 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32,14.0.33 and Intel(R) TXE versions prior to 3.1.75 and 4.0.25 may allow an unauthenticated user to potentially enable information disclosure via network...
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
187
VMScore
CVE-2018-12188
Insufficient input validation in Intel CSME prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before version 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially modify data via physical access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
409
VMScore
CVE-2018-12190
Insufficient input validation in Intel(r) CSME subsystem prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel(r) TXE prior to 3.1.60 or 4.0.10 may allow a privileged user to potentially enable an escalation of privilege via local access.
Intel Trusted Execution Engine Firmware
Intel Converged Security Management Engine Firmware
409
VMScore
CVE-2018-3659
A vulnerability in Intel PTT module in Intel CSME firmware before version 12.0.5 and Intel TXE firmware before version 4.0 may allow an unauthenticated user to potentially disclose information via physical access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
409
VMScore
CVE-2019-11087
Insufficient input validation in the subsystem for Intel(R) CSME prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable escalation of privilege, information disclosure or denial...
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-30310
CVE-2024-21683
CVE-2024-22187
chrome
deserialization
XPath injection
CVE-2024-27842
denial of service
CVE-2024-24851
google
CVE-2024-35400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »