Improper Authentication in Intel NUC Boards and Kits
CVE-2022-21794

6.7MEDIUM

Key Information:

Summary

An improper authentication vulnerability has been identified in the BIOS firmware of various Intel NUC Boards and Kits. This issue could potentially allow a privileged user to exploit the flaw and escalate privileges through local access. Users are advised to update their firmware to the latest version to mitigate any potential risks associated with this vulnerability.

Affected Version(s)

Intel(R) NUC Boards, Intel(R) NUC Business, Intel(R) NUC Enthusiast, Intel(R) NUC Kits before version HN0067

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.