7.8

CVE-2022-34147

Improper input validation in BIOS firmware for some Intel(R) NUC 9 Extreme Laptop Kits, Intel(R) NUC Performance Kits, Intel(R) NUC Performance Mini PC, Intel(R) NUC 8 Compute Element, Intel(R) NUC Pro Kit, Intel(R) NUC Pro Board, and Intel(R) NUC Compute Element may allow a privileged user to potentially enable escalation of privilege via local access.

Data is provided by the National Vulnerability Database (NVD)
IntelLapqc71a Firmware Version < qccfl357.0158
   IntelLapqc71a Version-
IntelLapqc71b Firmware Version < qccfl357.0158
   IntelLapqc71b Version-
IntelLapqc71c Firmware Version < qccfl357.0158
   IntelLapqc71c Version-
IntelLapqc71d Firmware Version < qccfl357.0158
   IntelLapqc71d Version-
IntelNuc10i3fnh Firmware Version < fncml357.0059
   IntelNuc10i3fnh Version-
IntelNuc10i3fnhf Firmware Version < fncml357.0059
   IntelNuc10i3fnhf Version-
IntelNuc10i3fnhfa Firmware Version < fncml357.0059
   IntelNuc10i3fnhfa Version-
IntelNuc10i3fnhja Firmware Version < fncml357.0059
   IntelNuc10i3fnhja Version-
IntelNuc10i3fnhn Firmware Version < fncml357.0059
   IntelNuc10i3fnhn Version-
IntelNuc10i3fnk Firmware Version < fncml357.0059
   IntelNuc10i3fnk Version-
IntelNuc10i3fnkn Firmware Version < fncml357.0059
   IntelNuc10i3fnkn Version-
IntelNuc10i5fnh Firmware Version < fncml357.0059
   IntelNuc10i5fnh Version-
IntelNuc10i5fnhca Firmware Version < fncml357.0059
   IntelNuc10i5fnhca Version-
IntelNuc10i5fnhf Firmware Version < fncml357.0059
   IntelNuc10i5fnhf Version-
IntelNuc10i5fnhja Firmware Version < fncml357.0059
   IntelNuc10i5fnhja Version-
IntelNuc10i5fnhj Firmware Version < fncml357.0059
   IntelNuc10i5fnhj Version-
IntelNuc10i5fnhn Firmware Version < fncml357.0059
   IntelNuc10i5fnhn Version-
IntelNuc10i5fnk Firmware Version < fncml357.0059
   IntelNuc10i5fnk Version-
IntelNuc10i5fnkn Firmware Version < fncml357.0059
   IntelNuc10i5fnkn Version-
IntelNuc10i5fnkpa Firmware Version < fncml357.0059
   IntelNuc10i5fnkpa Version-
IntelNuc10i5fnkp Firmware Version < fncml357.0059
   IntelNuc10i5fnkp Version-
IntelNuc10i7fnh Firmware Version < fncml357.0059
   IntelNuc10i7fnh Version-
IntelNuc10i7fnhaa Firmware Version < fncml357.0059
   IntelNuc10i7fnhaa Version-
IntelNuc10i7fnhc Firmware Version < fncml357.0059
   IntelNuc10i7fnhc Version-
IntelNuc10i7fnhja Firmware Version < fncml357.0059
   IntelNuc10i7fnhja Version-
IntelNuc10i7fnhn Firmware Version < fncml357.0059
   IntelNuc10i7fnhn Version-
IntelNuc10i7fnk Firmware Version < fncml357.0059
   IntelNuc10i7fnk Version-
IntelNuc10i7fnkn Firmware Version < fncml357.0059
   IntelNuc10i7fnkn Version-
IntelNuc10i7fnkp Firmware Version < fncml357.0059
   IntelNuc10i7fnkp Version-
IntelNuc10i7fnkpa Firmware Version < fncml357.0059
   IntelNuc10i7fnkpa Version-
IntelCm8i3cb4n Firmware Version < cbwhl357.0101
   IntelCm8i3cb4n Version-
IntelCm8i5cb8n Firmware Version < cbwhl357.0101
   IntelCm8i5cb8n Version-
IntelCm8i7cb8n Firmware Version < cbwhl357.0101
   IntelCm8i7cb8n Version-
IntelCm8ccb4r Firmware Version < cbwhl357.0101
   IntelCm8ccb4r Version-
IntelCm8pcb4r Firmware Version < cbwhl357.0101
   IntelCm8pcb4r Version-
IntelNuc8i3pnb Firmware Version < pnwhl357.0050
   IntelNuc8i3pnb Version-
IntelNuc8i3pnh Firmware Version < pnwhl357.0050
   IntelNuc8i3pnh Version-
IntelNuc8i3pnk Firmware Version < pnwhl357.0050
   IntelNuc8i3pnk Version-
IntelNuc9i5qn Firmware Version < qxcfl579.0071
   IntelNuc9i5qn Version-
IntelNuc9i7qn Firmware Version < qxcfl579.0071
   IntelNuc9i7qn Version-
IntelNuc9i9qn Firmware Version < qxcfl579.0071
   IntelNuc9i9qn Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.05% 0.144
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
secure@intel.com 7.5 0.8 6
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.