ZeroHour

CVE-2022-34147

CVSS 3.1
7.8 high
EPSS
<1%p8
Published
()
Modified
Description

Improper input validation in BIOS firmware for some Intel(R) NUC 9 Extreme Laptop Kits, Intel(R) NUC Performance Kits, Intel(R) NUC Performance Mini PC, Intel(R) NUC 8 Compute Element, Intel(R) NUC Pro Kit, Intel(R) NUC Pro Board, and Intel(R) NUC Compute Element may allow a privileged user to potentially enable escalation of privilege via local access.

Vendors
intel
Products
lapqc71a firmware, lapqc71b firmware, lapqc71c firmware, lapqc71d firmware, nuc10i3fnh firmware, nuc10i3fnhf firmware, nuc10i3fnhfa firmware, nuc10i3fnhja firmware, nuc10i3fnhn firmware, nuc10i3fnk firmware, nuc10i3fnkn firmware, nuc10i5fnh firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.