Xeon D 2146nt Firmware
Vendor:
First CVE: May 17, 2019 · Active for 7 years
34
Total CVEs
More Total CVEs than 97% of tracked products
11.3
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
6.5
Avg CVSS
Higher Avg CVSS than 32% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Xeon D 2146nt Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 17, 2019
7 years ago
Most Recent CVE
Nov 14, 2023
987 days ago
CVE Severity & Scoring
Xeon D 2146nt Firmware34 CVEs
79%
21%
All CVEs353,240 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local30 (88.2%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical4 (11.8%)
Adjacent Network0 (0.0%)
Attack Complexity
Low34 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None34 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low17 (50.0%)
High16 (47.1%)
None1 (2.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (34 CVEs).
34 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-23583HIGH Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or in | Nov 14, 2023 | 7.8 | 27 | NO | NO |
CVE-2021-0154HIGH Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access. | May 12, 2022 | 7.8 | 26 | NO | NO |
CVE-2021-0156HIGH Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable an escalation of privilege via local access. | Feb 9, 2022 | 7.8 | 25 | NO | NO |
CVE-2021-0116HIGH Out-of-bounds write in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | Feb 9, 2022 | 7.8 | 25 | NO | NO |
CVE-2022-40982MEDIUM Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to po | Aug 11, 2023 | 6.5 | 24 | NO | NO |
CVE-2021-33123HIGH Improper access control in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local acce | May 12, 2022 | 7.8 | 24 | NO | NO |
CVE-2021-0118MEDIUM Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access. | Feb 9, 2022 | 6.7 | 23 | NO | NO |
CVE-2018-12207MEDIUM Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of se | Nov 14, 2019 | 6.5 | 23 | NO | NO |
CVE-2022-33196MEDIUM Incorrect default permissions in some memory controller configurations for some Intel(R) Xeon(R) Processors when using Intel(R) Software Guard Extensions which may allow a privileg | Feb 16, 2023 | 6.7 | 22 | NO | NO |
CVE-2022-26343MEDIUM Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access. | Feb 16, 2023 | 6.7 | 22 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (34 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (34 CVEs).
Media Mentions
Signals from CVEs in this product scope (34 CVEs).
Top CNAs Publishing CVEs For Xeon D 2146nt Firmware
Top CWEs
Versions
No cataloged versions.