Improper Input Validation in Intel NUC BIOS Firmware
CVE-2023-29494

7.5HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
11 August 2023

Summary

An improper input validation flaw in the BIOS firmware of specific Intel NUC models may allow a privileged user to potentially escalate privileges through local access. This vulnerability highlights the importance of robust input validation mechanisms to prevent unauthorized access and potential exploitation by malicious actors. For more details, refer to the advisory from Intel.

Affected Version(s)

Intel(R) NUCs See references

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.