Intel Unison Software vulnerabilities

22 known vulnerabilities affecting intel/unison_software.

Total CVEs
22
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH11MEDIUM11

Vulnerabilities

Page 1 of 2
CVE-2023-39221HIGHCVSS 8.8fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-39221 [MEDIUM] CWE-284 CVE-2023-39221: Improper access control for some Intel Unison software may allow an authenticated user to potentiall Improper access control for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.
nvd
CVE-2023-39228HIGHCVSS 7.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-39228 [MEDIUM] CWE-284 CVE-2023-39228: Improper access control for some Intel Unison software may allow an unauthenticated user to potentia Improper access control for some Intel Unison software may allow an unauthenticated user to potentially enable denial of service via network access.
nvd
CVE-2023-22337HIGHCVSS 7.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-22337 [HIGH] CWE-20 CVE-2023-22337: Improper input validation for some Intel Unison software may allow an unauthenticated user to potent Improper input validation for some Intel Unison software may allow an unauthenticated user to potentially enable denial of service via network access.
nvd
CVE-2023-22663HIGHCVSS 8.8fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-22663 [MEDIUM] CWE-287 CVE-2023-22663: Improper authentication for some Intel Unison software may allow an authenticated user to potentiall Improper authentication for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.
nvd
CVE-2023-39412HIGHCVSS 8.8fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-39412 [MEDIUM] CWE-352 CVE-2023-39412: Cross-site request forgery in some Intel Unison software may allow an authenticated user to potentia Cross-site request forgery in some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.
nvd
CVE-2023-22448HIGHCVSS 7.2fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-22448 [MEDIUM] CWE-284 CVE-2023-22448: Improper access control for some Intel Unison software may allow a privileged user to potentially en Improper access control for some Intel Unison software may allow a privileged user to potentially enable escalation of privilege via network access.
nvd
CVE-2022-45469HIGHCVSS 7.8fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2022-45469 [LOW] CWE-20 CVE-2022-45469: Improper input validation for some Intel Unison software may allow an authenticated user to potentia Improper input validation for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-36860HIGHCVSS 8.8fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-36860 [HIGH] CWE-20 CVE-2023-36860: Improper input validation for some Intel Unison software may allow an authenticated user to potentia Improper input validation for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.
nvd
CVE-2023-22285HIGHCVSS 7.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-22285 [HIGH] CWE-284 CVE-2023-22285: Improper access control for some Intel Unison software may allow an unauthenticated user to potentia Improper access control for some Intel Unison software may allow an unauthenticated user to potentially enable denial of service via network access.
nvd
CVE-2023-22292HIGHCVSS 7.8fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-22292 [HIGH] CWE-248 CVE-2023-22292: Uncaught exception for some Intel Unison software may allow an authenticated user to potentially ena Uncaught exception for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-38570HIGHCVSS 7.8fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-38570 [MEDIUM] CWE-788 CVE-2023-38570: Access of memory location after end of buffer for some Intel Unison software may allow an authentica Access of memory location after end of buffer for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-43477MEDIUMCVSS 5.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2022-43477 [LOW] CWE-459 CVE-2022-43477: Incomplete cleanup for some Intel Unison software may allow an authenticated user to potentially ena Incomplete cleanup for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
nvd
CVE-2023-38131MEDIUMCVSS 6.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-38131 [MEDIUM] CWE-20 CVE-2023-38131: Improper input validationation for some Intel Unison software may allow an authenticated user to pot Improper input validationation for some Intel Unison software may allow an authenticated user to potentially enable denial of service via network access.
nvd
CVE-2023-22290MEDIUMCVSS 6.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2023-22290 [MEDIUM] CWE-248 CVE-2023-22290: Uncaught exception for some Intel Unison software may allow an authenticated user to potentially ena Uncaught exception for some Intel Unison software may allow an authenticated user to potentially enable denial of service via network access.
nvd
CVE-2022-46298MEDIUMCVSS 4.4fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2022-46298 [LOW] CWE-459 CVE-2022-46298: Incomplete cleanup for some Intel Unison software may allow a privileged user to potentially enable Incomplete cleanup for some Intel Unison software may allow a privileged user to potentially enable denial of service via local access.
nvd
CVE-2022-43666MEDIUMCVSS 5.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2022-43666 [LOW] CWE-1258 CVE-2022-43666: Exposure of sensitive system information due to uncleared debug information for some Intel Unison so Exposure of sensitive system information due to uncleared debug information for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
nvd
CVE-2022-46301MEDIUMCVSS 4.4fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2022-46301 [LOW] CWE-665 CVE-2022-46301: Improper Initialization for some Intel Unison software may allow a privileged user to potentially en Improper Initialization for some Intel Unison software may allow a privileged user to potentially enable denial of service via local access.
nvd
CVE-2022-46647MEDIUMCVSS 5.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2022-46647 [LOW] CWE-532 CVE-2022-46647: Insertion of sensitive information into log file for some Intel Unison software may allow an authent Insertion of sensitive information into log file for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
nvd
CVE-2022-45109MEDIUMCVSS 5.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2022-45109 [LOW] CWE-665 CVE-2022-45109: Improper initialization for some Intel Unison software may allow an authenticated user to potentiall Improper initialization for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
nvd
CVE-2022-46299MEDIUMCVSS 5.5fixed in 20.14.5683.0fixed in 20.14.4244+1 more2023-11-14
CVE-2022-46299 [LOW] CWE-691 CVE-2022-46299: Insufficient control flow management for some Intel Unison software may allow an authenticated user Insufficient control flow management for some Intel Unison software may allow an authenticated user to potentially enable information disclosure via local access.
nvd