Uncontrolled search path in some Intel(R) NUC Chaco Canyon BIOS update software before version iFlashV Windows 5.13.00.2105 may allow an authenticated user to potentially enable escalation of privilege via local access.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00780.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
22 May 2023, 14:23
Type | Values Removed | Values Added |
---|---|---|
First Time |
Intel iflashv
Intel nuc 8 Rugged Kit Nuc8cchkr Intel Intel nuc Board Nuc8cchb |
|
CWE | CWE-428 | |
References | (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00780.html - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
CPE | cpe:2.3:h:intel:nuc_8_rugged_kit_nuc8cchkr:-:*:*:*:*:*:*:* cpe:2.3:a:intel:iflashv:*:*:*:*:*:windows:*:* cpe:2.3:h:intel:nuc_board_nuc8cchb:-:*:*:*:*:*:*:* |
10 May 2023, 14:38
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-10 14:15
Updated : 2023-11-07 03:50
NVD link : CVE-2022-38101
Mitre link : CVE-2022-38101
JSON object : View
Products Affected
intel
- iflashv
- nuc_8_rugged_kit_nuc8cchkr
- nuc_board_nuc8cchb
CWE
CWE-428
Unquoted Search Path or Element