5 results (0.002 seconds)

CVSS: 6.7EPSS: 0%CPEs: 150EXPL: 0

Improper input validation in the firmware for Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access. Una comprobación de entrada inapropiada en el firmware para Intel® NUCs puede permitir a un usuario privilegiado habilitar potencialmente una escalada de privilegios por medio de un acceso local • https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00392.html • CWE-20: Improper Input Validation •

CVSS: 8.4EPSS: 0%CPEs: 55EXPL: 0

Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator and User passwords via access to password storage. Insuficiente protección del almacenamiento de contraseñas en el firmware del sistema para Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH en versiones BN0049 e inferiores permite que atacantes locales omitan las contraseñas Administrator y User mediante el acceso al almacenamiento de contraseñas. • http://www.securityfocus.com/bid/101241 https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00084&languageid=en-fr • CWE-522: Insufficiently Protected Credentials •

CVSS: 7.1EPSS: 0%CPEs: 55EXPL: 0

Insecure platform configuration in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows an attacker with physical presence to run arbitrary code via unauthorized firmware modification during BIOS Recovery. Configuración de la plataforma insegura en el firmware del sistema para Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH en versiones BN0049 e inferiores permite que un atacante con presencia física ejecute código arbitrario mediante la modificación sin autorización del firmware durante BIOS Recovery. • http://www.securityfocus.com/bid/101257 https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00084&languageid=en-fr •

CVSS: 7.5EPSS: 0%CPEs: 55EXPL: 0

Insufficient input validation in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to execute arbitrary code via manipulation of memory. Insuficiente validación de entradas en el firmware del sistema para Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH en versiones BN0049 e inferiores permite que atacantes locales ejecuten código arbitrario mediante la manipulación de la memoria. • https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00084&languageid=en-fr • CWE-20: Improper Input Validation •

CVSS: 7.5EPSS: 0%CPEs: 55EXPL: 0

Incorrect policy enforcement in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows attackers with local or physical access to bypass enforcement of integrity protections via manipulation of firmware storage. Cumplimiento incorrecto de políticas en el firmware del sistema para Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH en versiones BN0049 e inferiores permite que atacantes con acceso local o físico omitan el cumplimiento de protecciones de integridad mediante la manipulación del almacenamiento del firmware. • http://www.securityfocus.com/bid/101236 https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00084&languageid=en-fr • CWE-269: Improper Privilege Management •