Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
trusted execution engine firmware vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv3
CVE-2020-12303
Use after free in DAL subsystem for Intel(R) CSME versions prior to 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE 3.1.80, 4.0.30 may allow an authenticated user to potentially enable escalation of privileges via local access.
Intel Converged Security And Manageability Engine
Intel Trusted Execution Technology 3.1.80
Intel Trusted Execution Technology 4.0.30
4.6
CVSSv3
CVE-2020-8751
Insufficient control flow management in subsystem for Intel(R) CSME versions prior to 11.8.80, Intel(R) TXE versions prior to 3.1.80 may allow an unauthenticated user to potentially enable information disclosure via physical access.
Intel Converged Security And Manageability Engine
Intel Trusted Execution Technology
6.8
CVSSv3
CVE-2020-8705
Insecure default initialization of resource in Intel(R) Boot Guard in Intel(R) CSME versions prior to 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE versions prior to 3.1.80 and 4.0.30, Intel(R) SPS versions before E5_04.01.04.400, E3_0...
Intel Converged Security And Manageability Engine
Intel Trusted Execution Technology 3.1.80
Intel Trusted Execution Technology 4.0.30
Intel Server Platform Services Sps E3 04.01.04.200
Intel Server Platform Services Sps E5 04.01.04.400
Intel Server Platform Services Sps Soc-a 04.00.04.300
Intel Server Platform Services Sps Soc-x 04.00.04.200
7.8
CVSSv3
CVE-2020-8744
Improper initialization in subsystem for Intel(R) CSME versions before12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE versions prior to 4.0.30 Intel(R) SPS versions before E3_05.01.04.200 may allow a privileged user to potentially enable escalation of privilege via ...
Intel Trusted Execution Engine
Intel Server Platform Services
Intel Converged Security And Management Engine
Siemens Simatic S7-1518-4 Pn\\/dp Mfp Firmware -
Siemens Simatic S7-1518f-4 Pn\\/dp Mfp Firmware -
Siemens Simatic S7-1500 Firmware -
6.8
CVSSv3
CVE-2018-12192
Logic bug in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before version SPS_E5_04.00.04.393.0 may allow an unauthenticated user to potentially bypass MEBx authentication via physical access.
Intel Server Platform Services Firmware
Intel Converged Security Management Engine Firmware
6.7
CVSSv3
CVE-2018-12196
Insufficient input validation in Intel(R) AMT in Intel(R) CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow a privileged user to potentially execute arbitrary code via local access.
Intel Converged Security Management Engine Firmware
6.8
CVSSv3
CVE-2018-12185
Insufficient input validation in Intel(R) AMT in Intel(R) CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20 may allow an unauthenticated user to potentially execute arbitrary code via physical access.
Intel Converged Security Management Engine Firmware
9.8
CVSSv3
CVE-2019-0153
Buffer overflow in subsystem in Intel(R) CSME 12.0.0 up to and including 12.0.34 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
Intel Converged Security Management Engine Firmware
6.7
CVSSv3
CVE-2019-0170
Buffer overflow in subsystem in Intel(R) DAL before version 12.0.35 may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
7.5
CVSSv3
CVE-2020-0534
Improper input validation in the DAL subsystem for Intel(R) CSME versions prior to 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an unauthenticated user to potentially enable denial of service via network access.
Intel Converged Security Management Engine Firmware
Intel Converged Security Management Engine Firmware 14.5.11
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-26978
CVE-2024-26982
wireless
CVE-2023-6949
CVE-2024-26980
CVE-2024-32766
CVE-2024-26939
cache poisoning
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »