CVE-2021-0157Medium· 6.7▾ SunlitInsufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
▾ Sunlit zone — Low / medium · no exploitation signal
impact 36.9 · likelihood 0.6 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
3.1%
Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
celeron_n2805celeron_n2806celeron_n2807celeron_n2808celeron_n2810celeron_n2815celeron_n2820celeron_n2830celeron_n2840celeron_n2910celeron_n2920celeron_n2930celeron_n2940celeron_n3000celeron_n3010celeron_n3050celeron_n3060celeron_n3150celeron_n3160celeron_n3350celeron_n3350eceleron_n3450celeron_n4000celeron_n4020celeron_n4100celeron_n4120celeron_n4500celeron_n4505celeron_n5100celeron_n5105celeron_n6210celeron_n6211core_i3-1000g1core_i3-1000g4core_i3-1005g1core_i3-10100core_i3-10100ecore_i3-10100fcore_i3-10100tcore_i3-10100tecore_i3-10100ycore_i3-10105core_i3-10105fcore_i3-10105tcore_i3-10110ucore_i3-10110ycore_i3-10300core_i3-10300tcore_i3-10305core_i3-10305tcore_i3-10320core_i3-10325core_i3-11100hecore_i3-1110g4core_i3-1115g4core_i3-1115g4ecore_i3-1115grecore_i3-1120g4core_i3-1125g4core_i3-7020ucore_i3-7100core_i3-7100ecore_i3-7100hcore_i3-7100tcore_i3-7100ucore_i3-7101ecore_i3-7101tecore_i3-7102ecore_i3-7130ucore_i3-7167ucore_i3-7300core_i3-7300tcore_i3-7320core_i3-7350kcore_i3-8100core_i3-8100bcore_i3-8100hcore_i3-8100tcore_i3-8109ucore_i3-8130ucore_i3-8140ucore_i3-8145ucore_i3-8145uecore_i3-8300core_i3-8300tcore_i3-8350kcore_i5-10200hcore_i5-10210ucore_i5-10210ycore_i5-10300hcore_i5-1030g4core_i5-1030g7core_i5-10310ucore_i5-10310ycore_i5-1035g1core_i5-1035g4core_i5-1035g7core_i5-1038ng7core_i5-10400core_i5-10400fRefer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2021-0158Medium· 6.7Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
CVE-2024-21801High· 7.1Insufficient control flow management in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable denial of service via local access.
CVE-2015-2291High· 7.8(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted …
CVE-2025-13670Medium· 6.7The High Level Synthesis Compiler i++ command for Windows is vulnerable to a DLL planting vulnerability
CVE-2025-13669Medium· 6.7Uncontrolled Search Path Element vulnerability in Altera High Level Synthesis Compiler on Windows allows Search Order Hijacking.This issue affects High Level Synthesis Compiler: from 19.1 through 24.3.
CVE-2025-13665Medium· 6.7The System Console Utility for Windows is vulnerable to a DLL planting vulnerability