VendorsIntelnuc_kit_nuc8i7hnkany version
Vulnerabilities

Intel Nuc Kit Nuc8i7hnk - any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

16CVEs
CVE-2018-12176
Improper input validation in firmware for Intel NUC Kits may allow a privileged user to potentially execute arbitrary code resulting in information disclosure, escalation of privilege and/or denial of service via local access.
Published 2018-09-12 · Modified
8.2EPSS 0.004
CVE-2019-11094
Insufficient input validation in system firmware for Intel (R) NUC Kit may allow an authenticated user to potentially enable escalation of privilege, denial of service, and/or information disclosure via local access.
Published 2019-05-17 · Modified
7.8EPSS 0.004
CVE-2020-0530
Improper buffer restrictions in firmware for Intel(R) NUC may allow an authenticated user to potentially enable escalation of privilege via local access. The list of affected products is provided in intel-sa-00343: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00343.html
Published 2020-03-12 · Modified
7.8EPSS 0.003
CVE-2022-21794
Improper authentication in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Business, Intel(R) NUC Enthusiast, Intel(R) NUC Kits before version HN0067 may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2022-11-11 · Modified
7.7EPSS 0.002
CVE-2022-36372
Improper buffer restrictions in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2023-08-11 · Modified
7.5EPSS 0.002
CVE-2023-32655
Path transversal in some Intel(R) NUC Kits & Mini PCs - NUC8i7HVK & NUC8HNK USB Type C power delivery controller installatio software before version 1.0.10.3 for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2023-11-14 · Modified
7.3EPSS 0.002
CVE-2020-0526
Improper input validation in firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege via local access. The list of affected products is provided in intel-sa-00343: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00343.html
Published 2020-03-12 · Modified
6.7EPSS 0.003
CVE-2021-0054
Improper buffer restrictions in system firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2021-06-09 · Modified
6.7EPSS 0.002
CVE-2021-0067
 Improper access control in system firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.
Published 2021-06-09 · Modified
6.7EPSS 0.002
CVE-2023-20567
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature potentially leading to arbitrary code execution.
Published 2023-11-14 · Modified
6.7EPSS 0.002
CVE-2023-20568
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch RadeonInstaller.exe without validating the file signature potentially leading to arbitrary code execution.
Published 2023-11-14 · Modified
6.7EPSS 0.002
CVE-2017-3718
Improper setting of device configuration in system firmware for Intel(R) NUC kits may allow a privileged user to potentially enable escalation of privilege via physical access.
Published 2019-01-10 · Modified
6.2EPSS 0.003
CVE-2023-22356
Improper initialization in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable information disclosure via local access.
Published 2023-08-11 · Modified
6.0EPSS 0.002
CVE-2023-25771
Improper access control for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable denial of service via local access.
Published 2023-05-10 · Modified
5.8EPSS 0.001
CVE-2021-33086
Out-of-bounds write in firmware for some Intel(R) NUCs may allow an authenticated user to potentially enable denial of service via local access.
Published 2021-11-17 · Modified
5.5EPSS 0.002
CVE-2021-46748
Insufficient bounds checking in the ASP (AMD Secure Processor) may allow an attacker to access memory outside the bounds of what is permissible to a TA (Trusted Application) resulting in a potential denial of service.
Published 2023-11-14 · Modified
5.5EPSS 0.002