Improper Access Control in Intel SUR Software
CVE-2022-40207

8.2HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
10 May 2023

Summary

The Intel SUR software before version 2.4.8989 is susceptible to a vulnerability that involves improper access control permissions. This flaw may allow an authenticated user to escalate privileges via local access, potentially compromising system security. For more information, refer to Intel's security advisory.

Affected Version(s)

Intel(R) SUR software before version 2.4.8989

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.