Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
converged security management engine firmware vulnerabilities and exploits
(subscribe to this query)
6.4
CVSSv3
CVE-2020-8755
Race condition in subsystem for Intel(R) CSME versions prior to 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Intel Converged Security And Management Engine
Intel Server Platform Services
6.7
CVSSv3
CVE-2020-8756
Improper input validation in subsystem for Intel(R) CSME versions prior to 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow a privileged user to potentially enable escalation of privilege via local access.
Intel Converged Security And Manageability Engine
4.6
CVSSv3
CVE-2020-8761
Inadequate encryption strength in subsystem for Intel(R) CSME versions prior to 13.0.40 and 13.30.10 may allow an unauthenticated user to potentially enable information disclosure via physical access.
Intel Converged Security And Manageability Engine
4.6
CVSSv3
CVE-2020-8751
Insufficient control flow management in subsystem for Intel(R) CSME versions prior to 11.8.80, Intel(R) TXE versions prior to 3.1.80 may allow an unauthenticated user to potentially enable information disclosure via physical access.
Intel Converged Security And Manageability Engine
Intel Trusted Execution Technology
7.8
CVSSv3
CVE-2020-8744
Improper initialization in subsystem for Intel(R) CSME versions before12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE versions prior to 4.0.30 Intel(R) SPS versions before E3_05.01.04.200 may allow a privileged user to potentially enable escalation of privilege via ...
Intel Trusted Execution Engine
Intel Server Platform Services
Intel Converged Security And Management Engine
Siemens Simatic S7-1518-4 Pn\\/dp Mfp Firmware -
Siemens Simatic S7-1518f-4 Pn\\/dp Mfp Firmware -
Siemens Simatic S7-1500 Firmware -
7.8
CVSSv3
CVE-2020-12297
Improper access control in Installer for Intel(R) CSME Driver for Windows versions prior to 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel TXE 3.1.80, 4.0.30 may allow an authenticated user to potentially enable escalation of privileges via lo...
Intel Converged Security And Manageability Engine
Intel Trusted Execution Technology 3.1.80
Intel Trusted Execution Technology 4.0.30
7.8
CVSSv3
CVE-2020-12303
Use after free in DAL subsystem for Intel(R) CSME versions prior to 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE 3.1.80, 4.0.30 may allow an authenticated user to potentially enable escalation of privileges via local access.
Intel Converged Security And Manageability Engine
Intel Trusted Execution Technology 3.1.80
Intel Trusted Execution Technology 4.0.30
6.8
CVSSv3
CVE-2020-0566
Improper Access Control in subsystem for Intel(R) TXE versions prior to 3.175 and 4.0.25 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Intel Trusted Execution Engine Firmware
6.5
CVSSv3
CVE-2020-0531
Improper input validation in Intel(R) AMT versions prior to 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an authenticated user to potentially enable information disclosure via network access.
Intel Active Management Technology Firmware
5.3
CVSSv3
CVE-2020-0535
Improper input validation in Intel(R) AMT versions prior to 11.8.76, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable information disclosure via network access.
Intel Active Management Technology Firmware
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-34377
CVE-2024-20859
CVE-2023-49606
inject
arbitrary
CVE-2024-33788
CVE-2024-30973
IDOR
CVE-2024-33907
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »