ZeroHour

CVE-2020-0526

CVSS 3.1
6.7 medium
EPSS
<1%p27
Published
()
Modified
Description

Improper input validation in firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege via local access. The list of affected products is provided in intel-sa-00343: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00343.html

Vendors
intel
Products
nuc kit nuc8i7bek firmware, nuc 8 enthusiast pc nuc8i7bekqa firmware, nuc kit nuc8i7hnk firmware, nuc 8 business pc nuc8i7hnkqc firmware, nuc 8 mainstream-g kit nuc8i7inh firmware, nuc 8 mainstream-g kit nuc8i5inh firmware, nuc 8 mainstream-g mini pc nuc8i7inh firmware, nuc 8 rugged kit nuc8cchkr firmware, nuc board nuc8cchb firmware, nuc 8 home pc nuc8i3cysm firmware, nuc kit nuc7i7dnke firmware, nuc kit nuc7i7dnhe firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.