Escalation of Privilege Vulnerability in Intel Processor Identification Utility
CVE-2020-12335
7.8HIGH
Key Information:
- Vendor
Intel
- Vendor
- CVE Published:
- 12 November 2020
What is CVE-2020-12335?
Improper permission settings in the installer for the Intel Processor Identification Utility prior to version 6.4.0603 could enable an authenticated user to exploit local access for privilege escalation, potentially compromising the system's integrity. Users are advised to update to the latest version to mitigate this risk.
Affected Version(s)
Intel(R) Processor Identification Utility before version 6.4.0603
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved