← Volver a CVEs
CVE-2022-28699
HIGH7.5
Descripcion
Improper input validation for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Detalles CVE
Puntuacion CVSS v3.17.5
SeveridadHIGH
Vector CVSSCVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Vector de ataqueLOCAL
ComplejidadHIGH
Privilegios requeridosHIGH
Interaccion usuarioNONE
Publicado5/10/2023
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
intel:nuc7cjyhintel:nuc7cjyh_firmwareintel:nuc7cjyhnintel:nuc7cjyhn_firmwareintel:nuc7cjysalintel:nuc7cjysal_firmwareintel:nuc7cjysamnintel:nuc7cjysamn_firmwareintel:nuc7pjyhintel:nuc7pjyh_firmwareintel:nuc7pjyhnintel:nuc7pjyhn_firmwareintel:nuc8cchbintel:nuc8cchb_firmwareintel:nuc8cchbnintel:nuc8cchbn_firmwareintel:nuc8cchkrintel:nuc8cchkr_firmwareintel:nuc8cchkrnintel:nuc8cchkrn_firmwareintel:nuc8i3cysnintel:nuc8i3cysn_firmwareintel:nuc8i5inhintel:nuc8i5inh_firmwareintel:nuc8i7hnkintel:nuc8i7hnk_firmwareintel:nuc8i7hnkqcintel:nuc8i7hnkqc_firmwareintel:nuc8i7hvkintel:nuc8i7hvk_firmwareintel:nuc8i7hvkvaintel:nuc8i7hvkva_firmwareintel:nuc8i7hvkvawintel:nuc8i7hvkvaw_firmwareintel:nuc8i7inhintel:nuc8i7inh_firmwareintel:stk2mv64ccintel:stk2mv64cc_firmware
Debilidades (CWE)
CWE-20CWE-20
Referencias
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00777.html(secure@intel.com)
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00777.html(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.