Unquoted Search Path Vulnerability in Intel Server Firmware Update Utility
CVE-2023-22841
Key Information:
- Vendor
Intel
- Vendor
- CVE Published:
- 11 August 2023
What is CVE-2023-22841?
The software installer for the System Firmware Update Utility (SysFwUpdt) on certain Intel Server Boards and Intel Server Systems, specifically those based on the Intel 621A Chipset and versions preceding 16.0.7, contains an unquoted search path vulnerability. This flaw may allow an authenticated user to leverage local access to potentially escalate their privileges, posing a security risk to the affected systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
System Firmware Update Utility (SysFwUpdt) for some Intel(R) Server Boards and Intel(R) Server Systems Based on Intel(R) 621A Chipset before version 16.0.7
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved