Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Medium
CVE-2022-36382 CVSS:6
Intel X710 and E810 Series Ethernet Controllers and Adapters is vulnerable to a denial of service, caused by an out-of-bounds write in firmware. By sending a specially-crafted request, a local authenticated attacker could exploit this vulnerability to cause a denial of service.
CVE-2022-38056 CVSS:3.8
Intel Endpoint Management Assistant could allow a local authenticated attacker to gain elevated privileges on the system, caused by improper neutralization of user-supplied input. By sending a specially-crafted request, an attacker could exploit this vulnerability to gain elevated privileges.
CVE-2021-33104 CVSS:6.5
Intel One Boot Flash Utility (OFU) software is vulnerable to a denial of service, caused by improper access control. By sending a specially-crafted request, a local authenticated attacker could exploit this vulnerability to cause a denial of service.
CVE-2022-36287 CVSS:4
Intel FCS Server software is vulnerable to a denial of service, caused by an uncaught exception. A physical attacker could exploit this vulnerability to cause a denial of service.
CVE-2022-36797 CVSS:3.3
Intel Ethernet 500 Series Controller drivers for VMware are vulnerable to a denial of service, caused by protection mechanism failure. A local authenticated attacker could exploit this vulnerability to cause a denial of service.
CVE-2022-36416 CVSS:4.4
Intel Ethernet 500 Series Controller drivers for VMware could allow a local authenticated attacker to gain elevated privileges on the system, caused by protection mechanism failure. An attacker could exploit this vulnerability to gain elevated privileges on the system.
CVE-2022-27808 CVSS:6.3
Intel Ethernet Controller Administrative Tools drivers for Windows could allow a local authenticated attacker to gain elevated privileges on the system, caused by insufficient control flow management. An attacker could exploit this vulnerability to gain elevated privileges on the system.
CVE-2022-27234 CVSS:4.3
Intel Computer Vision Annotation Tool is vulnerable to server-side request forgery. A remote authenticated attacker could exploit this vulnerability to conduct an SSRF attack, allowing the attacker to obtain sensitive information.
CVE-2022-38090 CVSS:6
Intel processors could allow a local authenticated attacker to obtain sensitive information, caused by improper isolation of shared resources. An attacker could exploit this vulnerability to obtain sensitive information and use this information to launch further attacks against the affected system.
CVE-2022-41314 CVSS:6.7
Intel Network Adapter software could allow a local authenticated attacker to gain elevated privileges on the system, caused by an uncontrolled search path element. An attacker could exploit this vulnerability to gain elevated privileges on the system.
Intel
Refer to Intel Security Advisory for patch, upgrade or suggested workaround information.