Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
converged security management engine firmware vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2020-0536
Improper input validation in the DAL subsystem for Intel(R) CSME versions prior to 11.8.77, 11.12.77, 11.22.77, 12.0.64, 13.0.32,14.0.33 and Intel(R) TXE versions prior to 3.1.75 and 4.0.25 may allow an unauthenticated user to potentially enable information disclosure via network...
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
4.4
CVSSv3
CVE-2018-12189
Unhandled exception in Content Protection subsystem in Intel CSME prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE prior to 3.1.60 or 4.0.10 may allow privileged user to potentially modify data via local access.
Intel Trusted Execution Engine Firmware
Intel Converged Security Management Engine Firmware
6.7
CVSSv3
CVE-2018-12190
Insufficient input validation in Intel(r) CSME subsystem prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel(r) TXE prior to 3.1.60 or 4.0.10 may allow a privileged user to potentially enable an escalation of privilege via local access.
Intel Trusted Execution Engine Firmware
Intel Converged Security Management Engine Firmware
4.4
CVSSv3
CVE-2019-0168
Insufficient input validation in the subsystem for Intel(R) CSME prior to 11.8.70, 12.0.45 and 13.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable information disclosure via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
6.7
CVSSv3
CVE-2019-11087
Insufficient input validation in the subsystem for Intel(R) CSME prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable escalation of privilege, information disclosure or denial...
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
4.4
CVSSv3
CVE-2019-11101
Insufficient input validation in the subsystem for Intel(R) CSME prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable information disclosure via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
6.7
CVSSv3
CVE-2019-11106
Insufficient session validation in the subsystem for Intel(R) CSME prior to 11.8.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
6.7
CVSSv3
CVE-2019-11110
Authentication bypass in the subsystem for Intel(R) CSME prior to 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE prior to 3.1.70 and 4.0.20 may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
6.8
CVSSv3
CVE-2018-12192
Logic bug in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before version SPS_E5_04.00.04.393.0 may allow an unauthenticated user to potentially bypass MEBx authentication via physical access.
Intel Server Platform Services Firmware
Intel Converged Security Management Engine Firmware
8.2
CVSSv3
CVE-2018-3643
A vulnerability in Power Management Controller firmware in systems using specific Intel(R) Converged Security and Management Engine (CSME) before version 11.8.55, 11.11.55, 11.21.55, 12.0.6 or Intel(R) Server Platform Services firmware before version 4.x.04 may allow an attacker ...
Intel Server Platform Services Firmware
Intel Converged Security Management Engine Firmware
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »