Improper Initialization in Intel NUC Products
CVE-2023-22444
6MEDIUM
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 11 August 2023
Summary
An improper initialization issue has been identified in the BIOS firmware of various Intel NUC products, potentially allowing a privileged user to exploit this vulnerability. This could lead to the unauthorized disclosure of sensitive information via local access, highlighting the importance of timely updates and security practices surrounding Intel's NUC product line.
Affected Version(s)
Intel(R) NUC 13 Extreme Compute Element, Intel(R) NUC 13 Extreme Kit, Intel(R) NUC 11 Performance Kit, Intel(R) NUC 11 Performance Mini PC, Intel(R) NUC Compute Element, Intel(R) NUC Laptop Kit, Intel(R) NUC Pro Kit, Intel(R) NUC Pro Board and Intel(R) NUC Pro Mini PC BIOS firmware See references
References
CVSS V3.1
Score:
6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved