Escalation of Privilege Vulnerability in ITE Tech Consumer Infrared Drivers for Intel NUC
CVE-2023-23577

6.7MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
11 August 2023

Summary

Certain ITE Tech consumer infrared drivers prior to version 5.5.2.1 for Intel NUC are vulnerable to an uncontrolled search path element issue. This vulnerability may permit an authenticated user local access to escalate their privileges, potentially compromising the integrity and security of the system. It is essential for users and administrators to update their drivers to the latest version to mitigate associated risks.

Affected Version(s)

ITE Tech consumer infrared drivers for Intel(R) NUC before version 5.5.2.1

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.