7.8

CVE-2023-35121

Improper access control in the Intel(R) oneAPI DPC++/C++ Compiler before version 2022.2.1 for some Intel(R) oneAPI Toolkits before version  2022.3.1 may allow authenticated user to potentially enable escalation of privilege via local access.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IntelAdvisor Version < 2023.2
IntelCluster Checker Version2021.7.3
IntelDistribution For Python Version2023.1
IntelInspector Version < 2023.2
IntelMpi Library Version < 2021.10
IntelOneapi Base Toolkit Version < 2023.2
IntelOneapi Base Toolkit Version2023.2
IntelOneapi Deep Neural Network Version < 2023.2
IntelOneapi Deep Neural Network Version2023.2
IntelOneapi Hpc Toolkit Version2023.2
IntelOneapi Iot Toolkit Version2023.2
IntelOneapi Math Kernel Library Version < 2023.2
IntelThreading Building Blocks Version < 2021.10
IntelTrace Analyzer And Collector Version2021.10.0
IntelVtune Profiler SwPlatform- Version < 2023.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.08% 0.242
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
secure@intel.com 7.8 1.1 6
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.