Lucene search

K

Bios Security Vulnerabilities

cve
cve

CVE-2008-3900

Intel firmware PE94510M.86A.0050.2007.0710.1559 stores pre-boot authentication passwords in the BIOS Keyboard buffer and does not clear this buffer after use, which allows local users to obtain sensitive information by reading the physical memory locations associated with this buffer.

6AI Score

0.0004EPSS

2008-09-03 02:12 PM
19
cve
cve

CVE-2008-7096

Intel Desktop and Intel Mobile Boards with BIOS firmware DQ35JO, DQ35MP, DP35DP, DG33FB, DG33BU, DG33TL, MGM965TW, D945GCPE, and DX38BT allows local administrators with ring 0 privileges to gain additional privileges and modify code that is running in System Management Mode, or access hypervisory m...

7.1AI Score

0.001EPSS

2009-08-27 08:30 PM
28
cve
cve

CVE-2018-3612

Intel NUC kits with insufficient input validation in system firmware, potentially allows a local attacker to elevate privileges to System Management Mode (SMM).

7.8CVSS

7.3AI Score

0.0004EPSS

2018-05-10 10:29 PM
20
cve
cve

CVE-2019-14556

Improper initialization in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 & 5000 Series Processors may allow a privileged user to potentially enable denial of service via local access.

4.4CVSS

5.4AI Score

0.0004EPSS

2020-10-05 02:15 PM
29
cve
cve

CVE-2019-14557

Buffer overflow in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 & 5000 Series Processors may allow an authenticated user to potentially enable elevation of privilege or denial of service via adjacent access.

8CVSS

7.7AI Score

0.0004EPSS

2020-10-05 02:15 PM
38
cve
cve

CVE-2019-14558

Insufficient control flow management in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 & 5000 Series Processors may allow an authenticated user to potentially enable denial of service via adjacent access.

5.7CVSS

5.9AI Score

0.0004EPSS

2020-10-05 02:15 PM
61
2
cve
cve

CVE-2020-0571

Improper conditions check in BIOS firmware for 8th Generation Intel(R) Core(TM) Processors and Intel(R) Pentium(R) Silver Processor Series may allow an authenticated user to potentially enable information disclosure via local access.

5.5CVSS

5.9AI Score

0.0004EPSS

2020-10-05 02:15 PM
38
cve
cve

CVE-2020-0587

Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

7.1AI Score

0.0004EPSS

2020-11-12 06:15 PM
46
cve
cve

CVE-2020-0588

Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

7.1AI Score

0.0004EPSS

2020-11-12 06:15 PM
54
cve
cve

CVE-2020-0591

Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

6.8AI Score

0.0004EPSS

2020-11-12 06:15 PM
53
cve
cve

CVE-2020-0592

Out of bounds write in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or denial of service via local access.

6.7CVSS

7.1AI Score

0.0004EPSS

2020-11-12 06:15 PM
35
cve
cve

CVE-2020-0593

Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

7.2AI Score

0.0004EPSS

2020-11-12 06:15 PM
49
cve
cve

CVE-2020-12357

Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

7AI Score

0.0004EPSS

2021-06-09 07:15 PM
76
3
cve
cve

CVE-2020-12358

Out of bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access.

4.4CVSS

5.5AI Score

0.0004EPSS

2021-06-09 07:15 PM
83
1
cve
cve

CVE-2020-12359

Insufficient control flow management in the firmware for some Intel(R) Processors may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

6.8CVSS

7.2AI Score

0.001EPSS

2021-06-09 07:15 PM
44
1
cve
cve

CVE-2020-12360

Out of bounds read in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.

7.8CVSS

7.7AI Score

0.0004EPSS

2021-06-09 07:15 PM
56
4
cve
cve

CVE-2020-24486

Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via local access.

5.5CVSS

6AI Score

0.0004EPSS

2021-06-09 07:15 PM
54
2
cve
cve

CVE-2020-8670

Race condition in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.4CVSS

6.8AI Score

0.0004EPSS

2021-06-09 07:15 PM
59
cve
cve

CVE-2020-8671

Insufficient control flow management in BIOS firmware 8th, 9th Generation Intel(R) Core(TM) Processors and Intel(R) Celeron(R) Processor 4000 Series may allow an authenticated user to potentially enable information disclosure via local access.

5.5CVSS

5.8AI Score

0.0004EPSS

2020-10-05 02:15 PM
45
cve
cve

CVE-2020-8672

Out of bound read in BIOS firmware for 8th, 9th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 Series Processors may allow an unauthenticated user to potentially enable elevation of privilege or denial of service via local access.

7.8CVSS

7.5AI Score

0.0004EPSS

2021-02-02 10:15 PM
41
cve
cve

CVE-2020-8700

Improper input validation in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

7AI Score

0.0004EPSS

2021-06-09 07:15 PM
50
2
cve
cve

CVE-2020-8738

Improper conditions check in Intel BIOS platform sample code for some Intel(R) Processors before may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

6.8AI Score

0.0004EPSS

2020-11-12 06:15 PM
52
2
cve
cve

CVE-2020-8739

Use of potentially dangerous function in Intel BIOS platform sample code for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.

7.8CVSS

7.1AI Score

0.0004EPSS

2020-11-12 06:15 PM
32
1
cve
cve

CVE-2020-8740

Out of bounds write in Intel BIOS platform sample code for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

6.8AI Score

0.0004EPSS

2020-11-12 06:15 PM
36
1
cve
cve

CVE-2020-8764

Improper access control in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

6.7CVSS

6.7AI Score

0.0004EPSS

2020-11-12 06:15 PM
50
1
cve
cve

CVE-2021-0095

Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.

4.4CVSS

5.5AI Score

0.0004EPSS

2021-06-09 07:15 PM
45
5
cve
cve

CVE-2021-33117

Improper access control for some 3rd Generation Intel(R) Xeon(R) Scalable Processors before BIOS version MR7, may allow a local attacker to potentially enable information disclosure via local access.

5.5CVSS

5.4AI Score

0.0004EPSS

2022-05-12 05:15 PM
78
8