ZeroHour

CVE-2022-29871

CVSS 3.1
7.8 high
EPSS
<1%p5
Published
()
Modified
Description

Improper access control in the Intel(R) CSME software installer before version 2239.3.7.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

Vendors
intel
Products
converged security management engine firmware
Weakness
CWE-284, CWE-863
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.