Escalation of Privilege Vulnerability in Intel NUC Laptop Kits
CVE-2022-34345

6.2MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
18 August 2022

Summary

Improper input validation in the firmware of specific Intel NUC Laptop Kits prior to version BC0076 could permit a user with physical access to potentially escalate privileges. This vulnerability highlights the risks associated with firmware security and the importance of regular updates to mitigate exposure to such threats.

Affected Version(s)

Intel(R) NUC Laptop Kits before version BC0076

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.