intel security advisories
24 threat alerts tracking vulnerabilities and security advisories that affect intel products.
Vulnios monitors intel CVE feeds, vendor advisories, CISA KEV listings, and exploit-prediction data continuously. Each alert below is enriched with severity, exploitation status, affected products, and a remediation path. Use this page to scan recent intel security news in one place, or click into an individual alert for full detail.
Critical Vulnerability: CVE-2020-8747 — intel, netapp — active_management_technology_firmware, cloud_backup
Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable information disclosure and/or
criticalCVE-2020-8747Critical Vulnerability: CVE-2020-8752 — intel, netapp — active_management_technology_firmware, cloud_backup
Out-of-bounds write in IPv6 subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow an unauthenticated user to potentially enable escalation of
criticalCVE-2020-8752Critical Vulnerability: CVE-2020-12315 — intel — endpoint_management_assistant
Path traversal in the Intel(R) EMA before version 1.3.3 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
criticalCVE-2020-12315Critical Vulnerability: CVE-2020-12338 — intel — open_webrtc_toolkit
Insufficient control flow management in the Open WebRTC Toolkit before version 4.3.1 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
criticalCVE-2020-12338Critical Vulnerability: CVE-2020-11486 — intel, nvidia — bmc_firmware, dgx-1
NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contain a vulnerability in the AMI BMC firmware in which software allows an attacker to upload or transfer files that can be
criticalCVE-2020-11486Critical Vulnerability: CVE-2020-11483 — intel, nvidia — bmc_firmware, dgx-1
NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30 and all DGX-2 with BMC firmware versions prior to 1.06.06, contains a vulnerability in the AMI BMC firmware in which the firmw
criticalCVE-2020-11483Critical Vulnerability: CVE-2020-8758 — intel, netapp — standard_manageability, active_management_technology_firmware
Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39 may allow an unauthenticated user to pot
criticalCVE-2020-8758Critical Vulnerability: CVE-2020-0595 — intel — active_management_technology_firmware, service_manager
Use after free in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable escalation of privileg
criticalCVE-2020-0595Critical Vulnerability: CVE-2020-0594 — intel — active_management_technology_firmware, service_manager
Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable escalation of priv
criticalCVE-2020-0594Critical Vulnerability: CVE-2019-11107 — intel — active_management_technology_firmware
Insufficient input validation in the subsystem for Intel(R) AMT before version 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
criticalCVE-2019-11107Critical Vulnerability: CVE-2019-11131 — intel — active_management_technology_firmware
Logic issue in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
criticalCVE-2019-11131Critical Vulnerability: CVE-2019-11168 — intel — baseboard_management_controller_firmware, bbs2600bpb
Insufficient session validation in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure and/or denial of service via network
criticalCVE-2019-11168Critical Vulnerability: CVE-2019-11171 — intel — baseboard_management_controller_firmware, bbs2600bpb
Heap corruption in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure, escalation of privilege and/or denial of service vi
criticalCVE-2019-11171Critical Vulnerability: CVE-2019-11119 — intel — raid_web_console_3
Insufficient session validation in the service API for Intel(R) RWC3 version 4.186 and before may allow an unauthenticated user to potentially enable escalation of privilege via network access.
criticalCVE-2019-11119Critical Vulnerability: CVE-2019-0153 — intel — converged_security_management_engine_firmware
Buffer overflow in subsystem in Intel(R) CSME 12.0.0 through 12.0.34 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
criticalCVE-2019-0153Critical Vulnerability: CVE-2019-0172 — intel — unite
A logic issue in Intel Unite(R) Client for Android prior to version 4.0 may allow a remote attacker to potentially enable escalation of privilege via network access.
criticalCVE-2019-0172Critical Vulnerability: CVE-2019-0101 — intel — unite
Authentication bypass in the Intel Unite(R) solution versions 3.2 through 3.3 may allow an unauthenticated user to potentially enable escalation of privilege to the Intel Unite(R) Solution administrat
criticalCVE-2019-0101Critical Vulnerability: CVE-2018-12171 — intel — bmc_firmware, bbs2600bpb
Privilege escalation in Intel Baseboard Management Controller (BMC) firmware before version 1.43.91f76955 may allow an unprivileged user to potentially execute arbitrary code or perform denial of serv
criticalCVE-2018-12171Critical Vulnerability: CVE-2018-3679 — intel — data_center_manager
Escalation of privilege in Reference UI in Intel Data Center Manager SDK 5.0 and before may allow an unauthorized remote unauthenticated user to potentially execute code via administrator privileges.
criticalCVE-2018-3679Critical Vulnerability: CVE-2018-3641 — intel — remote_keyboard_mobile_app, remote_keyboard
Escalation of privilege in all versions of the Intel Remote Keyboard allows a network attacker to inject keystrokes as a local user.
criticalCVE-2018-3641Critical Vulnerability: CVE-2017-5719 — intel — deep_learning_training_tool
A vulnerability in the Intel Deep Learning Training Tool Beta 1 allows a network attacker to remotely execute code as a local user.
criticalCVE-2017-5719Critical Vulnerability: CVE-2017-5738 — intel — unite
Escalation of privilege vulnerability in admin portal for Intel Unite App versions 3.1.32.12, 3.1.41.18 and 3.1.45.26 allows an attacker with network access to cause a denial of service and/or informa
criticalCVE-2017-5738Critical Vulnerability: CVE-2017-12865 — intel, debian — connman, debian_linux
Stack-based buffer overflow in "dnsproxy.c" in connman 1.34 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted response query string passe
criticalCVE-2017-12865Critical Vulnerability: CVE-2017-5691 — intel — nuc7i3bnk_bios, nuc7i3bnk
Incorrect check in Intel processors from 6th and 7th Generation Intel Core Processor Families, Intel Xeon E3-1500M v5 and v6 Product Families, and Intel Xeon E3-1200 v5 and v6 Product Families allows
criticalCVE-2017-5691
Track intel exposure across your environment
Vulnios automatically cross-references your asset inventory against new intel CVEs and surfaces only what affects you. No more sifting manually — actionable findings only.
Start a free scan