CVE-2022-36789
—CVSS 3.1
7.8 high
EPSS
<1%p7
Published
()
Modified
Description
Improper access control in BIOS firmware for some Intel(R) NUC 10 Performance Kits and Intel(R) NUC 10 Performance Mini PCs before version FNCML357.0053 may allow a privileged user to potentially enable escalation of privilege via local access.
- Vendors
- intel
- Products
- nuc 10 performance kit nuc10i7fnhn firmware, nuc 10 performance kit nuc10i5fnkn firmware, nuc 10 performance kit nuc10i5fnhn firmware, nuc 10 performance kit nuc10i7fnkn firmware, nuc 10 performance kit nuc10i3fnhn firmware, nuc 10 performance kit nuc10i3fnkn firmware, nuc 10 performance mini pc nuc10i5fnhja firmware, nuc 10 performance kit nuc10i3fnhf firmware, nuc 10 performance mini pc nuc10i5fnhca firmware, nuc 10 performance mini pc nuc10i3fnhfa firmware, nuc 10 performance kit nuc10i5fnhj firmware, nuc 10 performance kit nuc10i7fnhc firmware
- Weakness
- CWE-284
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.