Improper Authentication in Intel NUC Boards and Kits
CVE-2022-21794
6.7MEDIUM
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 11 November 2022
Summary
An improper authentication vulnerability has been identified in the BIOS firmware of various Intel NUC Boards and Kits. This issue could potentially allow a privileged user to exploit the flaw and escalate privileges through local access. Users are advised to update their firmware to the latest version to mitigate any potential risks associated with this vulnerability.
Affected Version(s)
Intel(R) NUC Boards, Intel(R) NUC Business, Intel(R) NUC Enthusiast, Intel(R) NUC Kits before version HN0067
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved