
CVE-2023-31273
https://notcve.org/view.php?id=CVE-2023-31273
14 Nov 2023 — Protection mechanism failure in some Intel DCM software before version 5.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access. La falla del mecanismo de protección en algunos software Intel DCM anteriores a la versión 5.2 puede permitir que un usuario no autenticado habilite potencialmente la escalada de privilegios a través del acceso a la red. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00902.html • CWE-269: Improper Privilege Management CWE-693: Protection Mechanism Failure •

CVE-2022-44610
https://notcve.org/view.php?id=CVE-2022-44610
10 May 2023 — Improper authentication in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via network access. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00806.html • CWE-287: Improper Authentication •

CVE-2022-41979
https://notcve.org/view.php?id=CVE-2022-41979
10 May 2023 — Protection mechanism failure in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via network access. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00806.html • CWE-693: Protection Mechanism Failure •

CVE-2022-43475
https://notcve.org/view.php?id=CVE-2022-43475
10 May 2023 — Insecure storage of sensitive information in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00806.html • CWE-922: Insecure Storage of Sensitive Information •

CVE-2022-41998
https://notcve.org/view.php?id=CVE-2022-41998
10 May 2023 — Uncontrolled search path in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00806.html • CWE-427: Uncontrolled Search Path Element •

CVE-2022-44619
https://notcve.org/view.php?id=CVE-2022-44619
10 May 2023 — Insecure storage of sensitive information in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00806.html • CWE-922: Insecure Storage of Sensitive Information •

CVE-2022-40685
https://notcve.org/view.php?id=CVE-2022-40685
10 May 2023 — Insufficiently protected credentials in the Intel(R) DCM software before version 5.0.1 may allow an authenticated user to potentially enable information disclosure via network access. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00772.html • CWE-522: Insufficiently Protected Credentials •

CVE-2022-40210
https://notcve.org/view.php?id=CVE-2022-40210
10 May 2023 — Exposure of data element to wrong session in the Intel DCM software before version 5.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00772.html • CWE-488: Exposure of Data Element to Wrong Session CWE-668: Exposure of Resource to Wrong Sphere •

CVE-2022-33942 – Intel Data Center Manager 4.1.1.45749 Authentication Bypass / Spoofing
https://notcve.org/view.php?id=CVE-2022-33942
11 Nov 2022 — Protection mechanism failure in the Intel(R) DCM software before version 5.0 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access. La falla del mecanismo de protección en el software Intel(R) DCM anterior a la versión 5.0 puede permitir que un usuario no autenticado habilite potencialmente la escalada de privilegios a través del acceso adyacente. Intel Data Center Manager versions 4.1.1.45749 and below suffer from an authentication bypass vulnerability via spoo... • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00713.html • CWE-693: Protection Mechanism Failure •

CVE-2022-23403
https://notcve.org/view.php?id=CVE-2022-23403
18 Aug 2022 — Improper input validation in the Intel(R) Data Center Manager software before version 4.1 may allow an authenticated user to potentially enable denial of service via local access. Una comprobación de entrada inapropiada en el software Intel(R) Data Center Manager versiones anteriores a 4.1, puede permitir que un usuario autenticado permita potencialmente la denegación de servicio por medio de acceso local. • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00662.html • CWE-20: Improper Input Validation •