Improper Input Validation in Intel SUR Software
CVE-2022-33964

7.4HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
16 February 2023

Summary

The Intel SUR software prior to version 2.4.8902 is susceptible to an improper input validation vulnerability. This flaw could potentially allow an unauthenticated user to escalate their privileges through network access, posing a risk to the integrity and security of systems utilizing the software. The vulnerability emphasizes the importance of rigorous input validation mechanisms to protect against unauthorized access and exploitation.

Affected Version(s)

Intel(R) SUR software before version 2.4.8902

References

CVSS V3.1

Score:
7.4
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.