TROYANOSYVIRUS
Back to CVEs

CVE-2022-28699

HIGH
7.5

Description

Improper input validation for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

CVE Details

CVSS v3.1 Score7.5
SeverityHIGH
CVSS VectorCVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Attack VectorLOCAL
ComplexityHIGH
Privileges RequiredHIGH
User InteractionNONE
Published5/10/2023
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

intel:nuc7cjyhintel:nuc7cjyh_firmwareintel:nuc7cjyhnintel:nuc7cjyhn_firmwareintel:nuc7cjysalintel:nuc7cjysal_firmwareintel:nuc7cjysamnintel:nuc7cjysamn_firmwareintel:nuc7pjyhintel:nuc7pjyh_firmwareintel:nuc7pjyhnintel:nuc7pjyhn_firmwareintel:nuc8cchbintel:nuc8cchb_firmwareintel:nuc8cchbnintel:nuc8cchbn_firmwareintel:nuc8cchkrintel:nuc8cchkr_firmwareintel:nuc8cchkrnintel:nuc8cchkrn_firmwareintel:nuc8i3cysnintel:nuc8i3cysn_firmwareintel:nuc8i5inhintel:nuc8i5inh_firmwareintel:nuc8i7hnkintel:nuc8i7hnk_firmwareintel:nuc8i7hnkqcintel:nuc8i7hnkqc_firmwareintel:nuc8i7hvkintel:nuc8i7hvk_firmwareintel:nuc8i7hvkvaintel:nuc8i7hvkva_firmwareintel:nuc8i7hvkvawintel:nuc8i7hvkvaw_firmwareintel:nuc8i7inhintel:nuc8i7inh_firmwareintel:stk2mv64ccintel:stk2mv64cc_firmware

Weaknesses (CWE)

CWE-20CWE-20

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.