CVE-2023-31246
https://notcve.org/view.php?id=CVE-2023-31246
Incorrect default permissions in some Intel(R) SDP Tool software before version 1.4 build 5 may allow an authenticated user to potentially enable escalation of privilege via local access. • http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00905.html • CWE-276: Incorrect Default Permissions •
CVE-2023-34355
https://notcve.org/view.php?id=CVE-2023-34355
Uncontrolled search path element for some Intel(R) Server Board M10JNP2SB integrated BMC video drivers before version 3.0 for Microsoft Windows and before version 1.13.4 for linux may allow an authenticated user to potentially enable escalation of privilege via local access. • http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00899.html • CWE-427: Uncontrolled Search Path Element •
CVE-2022-44612
https://notcve.org/view.php?id=CVE-2022-44612
Use of hard-coded credentials in some Intel(R) Unison(TM) software before version 10.12 may allow an authenticated user user to potentially enable information disclosure via local access. El uso de credenciales codificadas en algunos programas Intel(R) Unison(TM) anteriores a la versión 10.12 puede permitir a un usuario autenticado revelar información mediante acceso local. • http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00897.html • CWE-798: Use of Hard-coded Credentials •
CVE-2023-25757
https://notcve.org/view.php?id=CVE-2023-25757
Improper access control in some Intel(R) Unison(TM) software before version 10.12 may allow a privileged user to potentially enable escalation of privilege via network access. • http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00897.html • CWE-284: Improper Access Control •
CVE-2022-29887
https://notcve.org/view.php?id=CVE-2022-29887
Cross-site Scripting (XSS) in some Intel(R) Manageability Commander software before version 2.3 may allow an unauthenticated user to potentially enable escalation of privilege via network access. Cross-site Scripting (XSS) en algunos Intel(R) Manageability Commander software antes de la versión 2.3 puede permitir que un usuario no autenticado potencialmente habilite la escalada de privilegios a través de acceso a la red. • http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00893.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •