6.7

CVE-2020-0526

Improper input validation in firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege via local access. The list of affected products is provided in intel-sa-00343: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00343.html

Data is provided by the National Vulnerability Database (NVD)
IntelNuc Kit Nuc8i7bek Firmware Versionbecfl357.86a.0077
   IntelNuc Kit Nuc8i7bek Version-
IntelNuc Kit Nuc8i7hnk Firmware Versionhnkbli70.86a.0059
   IntelNuc Kit Nuc8i7hnk Version-
IntelNuc 8 Business Pc Nuc8i7hnkqc Firmware Versionhnkbli70.86a.0059
IntelNuc 8 Rugged Kit Nuc8cchkr Firmware Versionchaplcel.0047
   IntelNuc 8 Rugged Kit Nuc8cchkr Version-
IntelNuc Board Nuc8cchb Firmware Versionchaplcel.0047
   IntelNuc Board Nuc8cchb Version-
IntelNuc 8 Home Pc Nuc8i3cysm Firmware Versioncycnli35.86a.0044
   IntelNuc 8 Home Pc Nuc8i3cysm Version-
IntelNuc Kit Nuc7i7dnke Firmware Versiondnkbli7v.86a.0067
   IntelNuc Kit Nuc7i7dnke Version-
IntelNuc Kit Nuc7i7dnhe Firmware Versiondnkbli7v.86a.0067
   IntelNuc Kit Nuc7i7dnhe Version-
IntelNuc Kit Nuc7i5dnke Firmware Versiondnkbli5v.86a.0067
   IntelNuc Kit Nuc7i5dnke Version-
IntelNuc Kit Nuc7i5dnhe Firmware Versiondnkbli5v.86a.0067
   IntelNuc Kit Nuc7i5dnhe Version-
IntelNuc Kit Nuc7i3dnke Firmware Versiondnkbli30.86a.0067
   IntelNuc Kit Nuc7i3dnke Version-
IntelNuc Kit Nuc7i3dnhe Firmware Versiondnkbli30.86a.0067
   IntelNuc Kit Nuc7i3dnhe Version-
IntelNuc Board Nuc7i7dnbe Firmware Versiondnkbli7v.86a.0067
   IntelNuc Board Nuc7i7dnbe Version-
IntelNuc Board Nuc7i5dnbe Firmware Versiondnkbli5v.86a.0067
   IntelNuc Board Nuc7i5dnbe Version-
IntelNuc Board Nuc7i3dnbe Firmware Versiondnkbli30.86a.0067
   IntelNuc Board Nuc7i3dnbe Version-
IntelCompute Stick Stk2m3w64cc Firmware Versionccsklm30.86a.0062
   IntelCompute Stick Stk2m3w64cc Version-
IntelCompute Stick Stk2m364cc Firmware Versionccsklm30.86a.0062
   IntelCompute Stick Stk2m364cc Version-
IntelNuc Kit Nuc6i7kyk Firmware Versionkyskli70.86a.0066
   IntelNuc Kit Nuc6i7kyk Version-
IntelNuc 7 Essential Pc Nuc7cjysal Firmware Versionjyglkcpx.86a.0053
IntelNuc Kit Nuc7cjyh Firmware Versionjyglkcpx.86a.0053
   IntelNuc Kit Nuc7cjyh Version-
IntelNuc Kit Nuc7pjyh Firmware Versionjyglkcpx.86a.0053
   IntelNuc Kit Nuc7pjyh Version-
IntelNuc Kit Nuc7i7bnh Firmware Versionbnkbl357.86a.0081
   IntelNuc Kit Nuc7i7bnh Version-
IntelNuc Kit Nuc7i5bnk Firmware Versionbnkbl357.86a.0081
   IntelNuc Kit Nuc7i5bnk Version-
IntelNuc Kit Nuc7i3bnh Firmware Versionbnkbl357.86a.0081
   IntelNuc Kit Nuc7i3bnh Version-
IntelNuc Kit Nuc7i5bnh Firmware Versionbnkbl357.86a.0081
   IntelNuc Kit Nuc7i5bnh Version-
IntelNuc Kit Nuc7i3bnk Firmware Versionbnkbl357.86a.0081
   IntelNuc Kit Nuc7i3bnk Version-
IntelNuc Kit Nuc7i7bnhx1 Firmware Versionbnkbl357.86a.0081
   IntelNuc Kit Nuc7i7bnhx1 Version-
IntelNuc Kit Nuc7i5bnhx1 Firmware Versionbnkbl357.86a.0081
   IntelNuc Kit Nuc7i5bnhx1 Version-
IntelNuc Kit Nuc7i3bnhx1 Firmware Versionbnkbl357.86a.0081
   IntelNuc Kit Nuc7i3bnhx1 Version-
IntelNuc Kit Nuc6cays Firmware Versionayaplcel.86a.0066
   IntelNuc Kit Nuc6cays Version-
IntelNuc Kit Nuc6cayh Firmware Versionayaplcel.86a.0066
   IntelNuc Kit Nuc6cayh Version-
IntelNuc Kit De3815tykhe Firmware Versiontybyt20h.86a.0024
   IntelNuc Kit De3815tykhe Version-
IntelNuc Board De3815tybe Firmware Versiontybyt20h.86a.0024
   IntelNuc Board De3815tybe Version-
IntelNuc Kit Nuc6i3syh Firmware Versionsyskli35.86a.0072
   IntelNuc Kit Nuc6i3syh Version-
IntelNuc Kit Nuc6i5syh Firmware Versionsyskli35.86a.0072
   IntelNuc Kit Nuc6i5syh Version-
IntelNuc Kit Nuc6i3syk Firmware Versionsyskli35.86a.0072
   IntelNuc Kit Nuc6i3syk Version-
IntelNuc Kit Nuc6i5syk Firmware Versionsyskli35.86a.0072
   IntelNuc Kit Nuc6i5syk Version-
IntelNuc Kit Nuc5pgyh Firmware Versionpybswcel.86a.0078
   IntelNuc Kit Nuc5pgyh Version-
IntelNuc Kit Nuc5ppyh Firmware Versionpybswcel.86a.0078
   IntelNuc Kit Nuc5ppyh Version-
IntelNuc Kit Nuc5cpyh Firmware Versionpybswcel.86a.0078
   IntelNuc Kit Nuc5cpyh Version-
IntelNuc Kit Nuc5i5ryk Firmware Versionrybdwi35.86a.0383
   IntelNuc Kit Nuc5i5ryk Version-
IntelNuc Kit Nuc5i3ryh Firmware Versionrybdwi35.86a.0383
   IntelNuc Kit Nuc5i3ryh Version-
IntelNuc Kit Nuc5i3ryhs Firmware Versionrybdwi35.86a.0383
   IntelNuc Kit Nuc5i3ryhs Version-
IntelNuc Kit Nuc5i3ryhsn Firmware Versionrybdwi35.86a.0383
   IntelNuc Kit Nuc5i3ryhsn Version-
IntelNuc Kit Nuc5i3ryk Firmware Versionrybdwi35.86a.0383
   IntelNuc Kit Nuc5i3ryk Version-
IntelNuc Kit Nuc5i5ryh Firmware Versionrybdwi35.86a.0383
   IntelNuc Kit Nuc5i5ryh Version-
IntelNuc Kit Nuc5i5ryhs Firmware Versionrybdwi35.86a.0383
   IntelNuc Kit Nuc5i5ryhs Version-
IntelNuc Kit Nuc5i7ryh Firmware Versionrybdwi35.86a.0383
   IntelNuc Kit Nuc5i7ryh Version-
IntelNuc Kit Nuc5i3myhe Firmware Versionmybdwi30.86a.0057
   IntelNuc Kit Nuc5i3myhe Version-
IntelNuc Kit Nuc5i5myhe Firmware Versionmybdwi5v.86a.0056
   IntelNuc Kit Nuc5i5myhe Version-
IntelNuc Board Nuc5i5mybe Firmware Versionmybdwi5v.86a.0056
   IntelNuc Board Nuc5i5mybe Version-
IntelNuc Board Nuc5i3mybe Firmware Versionmybdwi30.86a.0057
   IntelNuc Board Nuc5i3mybe Version-
IntelNuc Kit D54250wyk Firmware Versionwylpt10h.86a.0054
   IntelNuc Kit D54250wyk Version-
IntelNuc Board D34010wyb Firmware Versionwylpt10h.86a.0054
   IntelNuc Board D34010wyb Version-
IntelNuc Board D54250wyb Firmware Versionwylpt10h.86a.0054
   IntelNuc Board D54250wyb Version-
IntelNuc Kit D34010wyk Firmware Versionwylpt10h.86a.0054
   IntelNuc Kit D34010wyk Version-
IntelNuc Kit D34010wykh Firmware Versionwylpt10h.86a.0054
   IntelNuc Kit D34010wykh Version-
IntelNuc Kit D54250wykh Firmware Versionwylpt10h.86a.0054
   IntelNuc Kit D54250wykh Version-
IntelCompute Stick Stck1a32wfc Firmware Versionstck1a32wfc
   IntelCompute Stick Stck1a32wfc Version-
IntelCompute Stick Stck1a8lfc Firmware Versionstck1a8lfc
   IntelCompute Stick Stck1a8lfc Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.06% 0.171
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.