Improper Access Control in Intel CIP Software
CVE-2025-24516

6.8MEDIUM

Key Information:

Vendor

Intel

Vendor
CVE Published:
11 November 2025

What is CVE-2025-24516?

An improper access control issue exists in Intel's CIP software versions prior to WIN_DCA_2.4.0.11001, which may lead to information disclosure. An adversary with unprivileged software leveraging a privileged user account can exploit this vulnerability using a low complexity attack scenario. The attack may not require special internal knowledge or user interaction, allowing adjacent access to sensitive data. While this vulnerability may expose confidential information, it does not impact system integrity or availability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Intel(R) CIP software before version WIN_DCA_2.4.0.11001

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.