7.5

CVE-2022-28699

Improper input validation for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IntelNuc8cchb Firmware Version-
   IntelNuc8cchb Version-
IntelNuc8cchbn Firmware Version-
   IntelNuc8cchbn Version-
IntelNuc8cchkrn Firmware Version-
   IntelNuc8cchkrn Version-
IntelNuc8cchkr Firmware Version-
   IntelNuc8cchkr Version-
IntelNuc8i7hnkqc Firmware Version-
   IntelNuc8i7hnkqc Version-
IntelNuc8i7hvkva Firmware Version-
   IntelNuc8i7hvkva Version-
IntelNuc8i7hvkvaw Firmware Version-
   IntelNuc8i7hvkvaw Version-
IntelNuc8i7hvk Firmware Version-
   IntelNuc8i7hvk Version-
IntelNuc8i7hnk Firmware Version-
   IntelNuc8i7hnk Version-
IntelStk2mv64cc Firmware Version-
   IntelStk2mv64cc Version-
IntelNuc7cjysamn Firmware Version-
   IntelNuc7cjysamn Version-
IntelNuc7cjysal Firmware Version-
   IntelNuc7cjysal Version-
IntelNuc7cjyhn Firmware Version-
   IntelNuc7cjyhn Version-
IntelNuc7pjyhn Firmware Version-
   IntelNuc7pjyhn Version-
IntelNuc7pjyh Firmware Version-
   IntelNuc7pjyh Version-
IntelNuc7cjyh Firmware Version-
   IntelNuc7cjyh Version-
IntelNuc8i3cysn Firmware Version-
   IntelNuc8i3cysn Version-
IntelNuc8i7inh Firmware Version-
   IntelNuc8i7inh Version-
IntelNuc8i5inh Firmware Version-
   IntelNuc8i5inh Version-
IntelNuc8i7inh Firmware Version-
   IntelNuc8i7inh Version-
IntelNuc8i5inh Firmware Version-
   IntelNuc8i5inh Version-
IntelNuc7cjysamn Firmware Version-
   IntelNuc7cjysamn Version-
IntelNuc7cjysal Firmware Version-
   IntelNuc7cjysal Version-
IntelNuc7cjyhn Firmware Version-
   IntelNuc7cjyhn Version-
IntelNuc7pjyhn Firmware Version-
   IntelNuc7pjyhn Version-
IntelNuc7pjyh Firmware Version-
   IntelNuc7pjyh Version-
IntelNuc7cjyh Firmware Version-
   IntelNuc7cjyh Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.06% 0.146
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
secure@intel.com 7.5 0.8 6
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.