Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-35990

EPSS 0.03% · P9
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-35990

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Improper input validation for some Intel Endpoint Management Assistant (EMA) software before version 1.14.5 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via adjacent access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Intel Endpoint Management Assistant 输入验证错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Intel Endpoint Management Assistant(Intel EMA)是美国英特尔(Intel)公司的一款应用于管理远端设备的管理软件。该软件为远程办公提供安全和便捷性。 Intel Endpoint Management Assistant 1.14.5之前版本存在输入验证错误漏洞,该漏洞源于输入验证不当,可能导致权限提升。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-Intel Endpoint Management Assistant (EMA) software before version 1.14.5 -

II. Public POCs for CVE-2025-35990

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-35990

登录查看更多情报信息。

Same Patch Batch · n/a · 2026-05-12 · 60 CVEs total

CVE-2026-20753Intel Slim Bootloader 输入验证错误漏洞
CVE-2026-20714Intel QAT software drivers for Windows 缓冲区错误漏洞
CVE-2025-35991Intel Xeon Scalable Processors 安全漏洞
CVE-2025-35979Intel Processors 安全漏洞
CVE-2025-35969Intel Server Firmware Update Utility 代码问题漏洞
CVE-2025-36510Intel Display Virtualization for Windows OS driver 缓冲区错误漏洞
CVE-2026-20782Intel QAT software drivers for Windows 安全漏洞
CVE-2026-20772Intel Connectivity Performance Suite 代码问题漏洞
CVE-2026-20771Intel QAT software drivers for Windows 代码问题漏洞
CVE-2026-20754Intel NPU Drivers 代码问题漏洞
CVE-2026-20793Intel QAT software drivers for Windows 安全漏洞
CVE-2026-20751Intel Data Center Graphics Driver 缓冲区错误漏洞
CVE-2026-20738Intel QuickAssist Adapter 8960 安全漏洞
CVE-2026-20718Intel NPU Driver for Linux和Intel NPU Driver for Windows 安全漏洞
CVE-2026-20717Intel QAT software drivers for Windows 输入验证错误漏洞
CVE-2025-65719kubectl-mcp-server 安全漏洞
CVE-2025-70842FluentCMS 跨站脚本漏洞
CVE-2026-31222Snorkel 安全漏洞
CVE-2026-31239Mamba 安全漏洞
CVE-2026-31236LLM 安全漏洞

Showing top 20 of 60 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2025-35990

No comments yet


Leave a comment