Input Validation Flaw in Intel Wireless Firmware Products
CVE-2021-0066
8.4HIGH
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 9 February 2022
Summary
An improper input validation vulnerability exists in the firmware of Intel PROSet/Wireless Wi-Fi and Killer Wi-Fi for Windows 10 and 11. This flaw may allow an unauthenticated user with local access to exploit the vulnerability, potentially leading to elevation of privileges in the affected systems, thereby compromising user security.
Affected Version(s)
Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and Killer(TM) Wi-Fi in Windows 10 and 11 See references
References
CVSS V3.1
Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved