Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
converged security management engine firmware vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv3
CVE-2019-11103
Insufficient input validation in firmware update software for Intel(R) CSME prior to 12.0.45,13.0.10 and 14.0.10 may allow an authenticated user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
6.7
CVSSv3
CVE-2019-11108
Insufficient input validation in subsystem for Intel(R) CSME prior to 12.0.45 and 13.0.10 may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
8.8
CVSSv3
CVE-2019-0169
Heap overflow in subsystem in Intel(R) CSME prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow an unauthenticated user to potentially enable escalation of privileges, information disclosure or denial of service via adjacent access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
4.4
CVSSv3
CVE-2018-12189
Unhandled exception in Content Protection subsystem in Intel CSME prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE prior to 3.1.60 or 4.0.10 may allow privileged user to potentially modify data via local access.
Intel Trusted Execution Engine Firmware
Intel Converged Security Management Engine Firmware
6.7
CVSSv3
CVE-2018-12190
Insufficient input validation in Intel(r) CSME subsystem prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel(r) TXE prior to 3.1.60 or 4.0.10 may allow a privileged user to potentially enable an escalation of privilege via local access.
Intel Trusted Execution Engine Firmware
Intel Converged Security Management Engine Firmware
7.8
CVSSv3
CVE-2019-0086
Insufficient access control vulnerability in Dynamic Application Loader software for Intel(R) CSME prior to 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) TXE 3.1.65, 4.0.15 may allow an unprivileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
4.4
CVSSv3
CVE-2019-0168
Insufficient input validation in the subsystem for Intel(R) CSME prior to 11.8.70, 12.0.45 and 13.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable information disclosure via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
7.5
CVSSv3
CVE-2020-0536
Improper input validation in the DAL subsystem for Intel(R) CSME versions prior to 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32,14.0.33 and Intel(R) TXE versions prior to 3.1.75 and 4.0.25 may allow an unauthenticated user to potentially enable information disclosure via network...
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
5.5
CVSSv3
CVE-2020-0539
Path traversal in subsystem for Intel(R) DAL software for Intel(R) CSME versions prior to 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32, 14.0.33 and Intel(R) TXE versions prior to 3.1.75, 4.0.25 may allow an unprivileged user to potentially enable denial of service via local acce...
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
6.8
CVSSv3
CVE-2018-3659
A vulnerability in Intel PTT module in Intel CSME firmware before version 12.0.5 and Intel TXE firmware before version 4.0 may allow an unauthenticated user to potentially disclose information via physical access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
validation
CVE-2024-34413
CVE-2024-34089
CVE-2024-33408
local
SQL
CVE-2024-0402
CVE-2024-33910
CVE-2024-31848
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »