Privilege Escalation Vulnerability in Intel NUC BIOS Firmware
CVE-2022-28699

7.5HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
10 May 2023

Summary

This vulnerability in Intel NUC BIOS firmware stems from improper input validation, which may enable a privileged user to execute actions that could lead to escalation of privileges through local access. Attackers with local access could leverage this flaw to gain unauthorized control over the system, posing a significant security risk.

Affected Version(s)

Intel(R) NUC BIOS firmware See references

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.