Potential Information Disclosure via Local Access
CVE-2023-27502
3.3LOW
Key Information:
- Vendor
Intel
- Vendor
- CVE Published:
- 14 March 2024
What is CVE-2023-27502?
An information disclosure vulnerability exists within Intel Local Manageability Service software prior to version 2316.5.1.2. This flaw allows an authenticated user to potentially access sensitive information through improper logging practices. The insertion of sensitive information into log files can expose critical data if local access is achieved, heightening the risk of unauthorized information retrieval. Appropriate security measures are recommended to mitigate this risk and ensure that sensitive data is properly protected.
Affected Version(s)
Intel(R) Local Manageability Service software before version 2316.5.1.2