Known vulnerabilities in Intel SGX SDK for Windows

Vendor: Intel
Software CPE: cpe:2.3:a:intel:intel_sgx_sdk_for_windows:*:*:*:*:*:*:*:*
Total vulnerabilities: 13
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Intel SGX SDK for Windows Intel SGX SDK for Windows is affected by 13 known vulnerabilities: 13 low Critical High Medium Low

Vulnerabilities (13)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114442 - Improper input validation
CVE-2025-32004
CWE-20 Low
No
No
- 26.08.2025 SB2025082649
#VU72463 - Exposure of sensitive information to an unauthorized actor
CVE-2022-26841
CWE-200 Low
No
No
2.15.100.1 21.02.2023 SB2023022161
#VU72462 - Exposure of sensitive information to an unauthorized actor
CVE-2022-26509
CWE-200 Low
No
No
2.15.100.1 21.02.2023 SB2023022161
#VU64376 - Incomplete cleanup
CVE-2022-21127
CWE-459 Low
No
No
2.16.100.3 14.06.2022 SB2022061463
SB2022061464
SB2022061630
and 36 more
#VU64364 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21123
CWE-200 Low
No
No
2.16.100.3 14.06.2022 SB2022061454
SB2022061465
SB2022061463
and 97 more
#VU64365 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21125
CWE-200 Low
No
No
2.16.100.3 14.06.2022 SB2022061454
SB2022061467
SB2022061463
and 96 more
#VU64366 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21166
CWE-200 Low
No
No
2.16.100.3 14.06.2022 SB2022061454
SB2022061466
SB2022061463
and 102 more
#VU57596 - Permissions, Privileges, and Access Controls
CVE-2021-0186
CWE-264 Low
No
No
2.13 21.10.2021 SB2021102136
#VU54157 - Observable discrepancy
CVE-2021-0001
CWE-203 Low
No
No
2.12.103 16.06.2021 SB2021061613
#VU25898 - Exposure of sensitive information to an unauthorized actor
CVE-2020-0551
CWE-200 Low
Available
No
- 10.03.2020 SB2020031017
SB2020031020
SB2021040736
#VU25191 - Improper Initialization
CVE-2020-0561
CWE-665 Low
No
No
2.6.100.1 11.02.2020 SB2020021125
SB2020050301
SB2020050622
#VU16991 - Improper input validation
CVE-2018-18098
CWE-20 Low
No
No
2.2.100 15.01.2019 SB2019011506
#VU16332 - Exposure of sensitive information to an unauthorized actor
CVE-2018-12155
CWE-200 Low
No
No
2.2.100 07.12.2018 SB2018120725
SB2019011506