Show filters
164 Total Results
Displaying 81-90 of 164
Sort by:
Attacker Value
Unknown

CVE-2021-0093

Disclosure Date: February 09, 2022 (last updated February 23, 2025)
Incorrect default permissions in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.
Attacker Value
Unknown

CVE-2021-0092

Disclosure Date: February 09, 2022 (last updated February 23, 2025)
Improper access control in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.
Attacker Value
Unknown

CVE-2021-0091

Disclosure Date: February 09, 2022 (last updated February 23, 2025)
Improper access control in the firmware for some Intel(R) Processors may allow an unauthenticated user to potentially enable an escalation of privilege via local access.
Attacker Value
Unknown

CVE-2021-0060

Disclosure Date: February 09, 2022 (last updated February 23, 2025)
Insufficient compartmentalization in HECI subsystem for the Intel(R) SPS before versions SPS_E5_04.01.04.516.0, SPS_E5_04.04.04.033.0, SPS_E5_04.04.03.281.0, SPS_E5_03.01.03.116.0, SPS_E3_05.01.04.309.0, SPS_02.04.00.101.0, SPS_SoC-A_05.00.03.114.0, SPS_SoC-X_04.00.04.326.0, SPS_SoC-X_03.00.03.117.0, IGN_E5_91.00.00.167.0, SPS_PHI_03.01.03.078.0 may allow an authenticated user to potentially enable escalation of privilege via physical access.
Attacker Value
Unknown

CVE-2021-33625

Disclosure Date: February 03, 2022 (last updated February 23, 2025)
An issue was discovered in Kernel 5.x in Insyde InsydeH2O, affecting HddPassword. Software SMI services that use the Communicate() function of the EFI_SMM_COMMUNICATION_PROTOCOL do not check whether the address of the buffer is valid, which allows use of SMRAM, MMIO, or OS kernel addresses.
Attacker Value
Unknown

CVE-2021-41289

Disclosure Date: November 15, 2021 (last updated February 23, 2025)
ASUS P453UJ contains the Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability. With a general user’s permission, local attackers can modify the BIOS by replacing or filling in the content of the designated Memory DataBuffer, which causing a failure of integrity verification and further resulting in a failure to boot.
0
Attacker Value
Unknown

CVE-2020-5955

Disclosure Date: November 03, 2021 (last updated November 29, 2024)
An issue was discovered in Int15MicrocodeSmm in Insyde InsydeH2O before 2021-10-14 on Intel client chipsets. A caller may be able to escalate privileges.
Attacker Value
Unknown

CVE-2021-3452

Disclosure Date: July 16, 2021 (last updated February 23, 2025)
A potential vulnerability in the system shutdown SMI callback function in some ThinkPad models may allow an attacker with local access and elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2020-12359

Disclosure Date: June 09, 2021 (last updated February 22, 2025)
Insufficient control flow management in the firmware for some Intel(R) Processors may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Attacker Value
Unknown

CVE-2020-8700

Disclosure Date: June 09, 2021 (last updated February 22, 2025)
Improper input validation in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.