Improper Authentication in Intel SUR Software
CVE-2022-32971

3.1LOW

Key Information:

Vendor
Intel
Vendor
CVE Published:
16 February 2023

Summary

Improper authentication in the Intel SUR software prior to version 2.4.8902 can allow a privileged user to exploit network access, potentially enabling unauthorized privilege escalation. This vulnerability highlights the importance of ensuring robust authentication mechanisms within software applications to prevent exploitation by malicious actors.

Affected Version(s)

Intel(R) SUR software before version 2.4.8902

References

CVSS V3.1

Score:
3.1
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.