Escalation of Privilege Vulnerability in Intel Processor Identification Utility
CVE-2020-12335

7.8HIGH

Key Information:

Vendor

Intel

Vendor
CVE Published:
12 November 2020

What is CVE-2020-12335?

Improper permission settings in the installer for the Intel Processor Identification Utility prior to version 6.4.0603 could enable an authenticated user to exploit local access for privilege escalation, potentially compromising the system's integrity. Users are advised to update to the latest version to mitigate this risk.

Affected Version(s)

Intel(R) Processor Identification Utility before version 6.4.0603

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.