Potential Escalation of Privilege via Local Access
CVE-2024-36276

7.8HIGH

Key Information:

Vendor

Intel

Vendor
CVE Published:
13 November 2024

What is CVE-2024-36276?

Certain versions of Intel CIP software enable insecure inherited permissions, which may permit an authenticated user to escalate privileges through local access. This vulnerability could be exploited, allowing a potential attacker to gain unauthorized access to critical system functions. It is essential for users to update to the latest version to mitigate this risk.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.