Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
active management technology vulnerabilities and exploits
(subscribe to this query)
409
VMScore
CVE-2018-12190
Insufficient input validation in Intel(r) CSME subsystem prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel(r) TXE prior to 3.1.60 or 4.0.10 may allow a privileged user to potentially enable an escalation of privilege via local access.
Intel Trusted Execution Engine Firmware
Intel Converged Security Management Engine Firmware
641
VMScore
CVE-2018-12192
Logic bug in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before version SPS_E5_04.00.04.393.0 may allow an unauthenticated user to potentially bypass MEBx authentication via physical access.
Intel Server Platform Services Firmware
Intel Converged Security Management Engine Firmware
409
VMScore
CVE-2019-0086
Insufficient access control vulnerability in Dynamic Application Loader software for Intel(R) CSME prior to 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) TXE 3.1.65, 4.0.15 may allow an unprivileged user to potentially enable escalation of privilege via local access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
641
VMScore
CVE-2019-0098
Logic bug vulnerability in subsystem for Intel(R) CSME before version 12.0.35, Intel(R) TXE prior to 3.1.65, 4.0.15 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
409
VMScore
CVE-2020-12297
Improper access control in Installer for Intel(R) CSME Driver for Windows versions prior to 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel TXE 3.1.80, 4.0.30 may allow an authenticated user to potentially enable escalation of privileges via lo...
Intel Converged Security And Manageability Engine
Intel Trusted Execution Technology 3.1.80
Intel Trusted Execution Technology 4.0.30
409
VMScore
CVE-2020-12303
Use after free in DAL subsystem for Intel(R) CSME versions prior to 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE 3.1.80, 4.0.30 may allow an authenticated user to potentially enable escalation of privileges via local access.
Intel Converged Security And Manageability Engine
Intel Trusted Execution Technology 3.1.80
Intel Trusted Execution Technology 4.0.30
516
VMScore
CVE-2017-5729
Frame replay vulnerability in Wi-Fi subsystem in Intel Dual-Band and Tri-Band Wireless-AC Products allows remote malicious user to replay frames via channel-based man-in-the-middle.
Intel Dual Band Wireless-ac 3160 -
Intel Dual Band Wireless-ac 7260 -
Intel Dual Band Wireless-n 7260 -
Intel Wireless-n 7260 -
Intel Dual Band Wireless-ac 7265 -
Intel Dual Band Wireless-n 7265 -
Intel Wireless-n 7265 -
Intel Dual Band Wireless-ac 3165 -
Intel Dual Band Wireless-ac 3168 -
Intel Tri-band Wireless-ac 17265 -
Intel Dual Band Wireless-ac 8260 -
Intel Tri-band Wireless-ac 18260 -
Intel Dual Band Wireless-ac 8265 -
Intel Tri-band Wireless-ac 18265 -
Intel Wireless-ac 9260 -
Intel Active Management Technology Firmware
641
VMScore
CVE-2018-12191
Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services prior to 4.00.04.383 or SPS 4.01.02.174, or Intel(R) TXE prior to 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially execute a...
Intel Converged Security Management Engine Firmware
Intel Server Platform Services Firmware
Intel Trusted Execution Engine Firmware
409
VMScore
CVE-2018-12208
Buffer overflow in HECI subsystem in Intel(R) CSME prior to 11.8.60, 11.11.60, 11.22.60 or 12.0.20 and Intel(R) TXE version prior to 3.1.60 or 4.0.10, or Intel(R) Server Platform Services before version 5.00.04.012 may allow an unauthenticated user to potentially execute arbitrar...
Intel Server Platform Services Firmware
Intel Converged Security Management Engine Firmware
Intel Trusted Execution Engine Firmware
392
VMScore
CVE-2019-0090
Insufficient access control vulnerability in subsystem for Intel(R) CSME prior to 11.x, 12.0.35 Intel(R) TXE 3.x, 4.x, Intel(R) Server Platform Services 3.x, 4.x, Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow an unauthenticated user to potentially enable escalation ...
Intel Converged Security And Management Engine
Intel Server Platform Services
1 Github repository
1 Article
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »