Improper Authentication in Intel SUR Software by Intel
CVE-2022-33946

5.6MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
16 February 2023

Summary

An improper authentication vulnerability exists in Intel SUR software that could allow an authenticated user to escalate privileges via local access. Users running versions prior to 2.4.8902 may be affected, potentially compromising system integrity. For more details, refer to Intel's security advisory.

Affected Version(s)

Intel(R) SUR software before version 2.4.8902

References

CVSS V3.1

Score:
5.6
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.