Improper Input Validation in Intel NUC Kits Firmware
CVE-2022-32577
3.4LOW
Summary
An improper input validation vulnerability exists in the BIOS firmware of certain Intel NUC Kits prior to version PY0081. This flaw may enable a privileged user to potentially gain unauthorized information or trigger a denial of service by manipulating input locally. Organizations using affected Intel NUC Kits should take immediate action to update their firmware to mitigate risks associated with this vulnerability.
Affected Version(s)
Intel(R) NUC Kits before version PY0081
References
CVSS V3.1
Score:
3.4
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved