7.8
CVE-2023-42429
- EPSS 0.15%
- Veröffentlicht 19.01.2024 20:15:11
- Zuletzt bearbeitet 21.11.2024 08:22:31
- Erkennungen
Improper buffer restrictions in some Intel NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Nuc 7 Essential Pc Nuc7cjysal Firmware Version jyglkcpx.0071
Intel ≫ Nuc 7 Essential Nuc7cjysamn Firmware Version jyglkcpx.0071
Intel ≫ Nuc Kit Nuc7cjyhn Firmware Version jyglkcpx.0071
Intel ≫ Nuc Kit Nuc7cjyh Firmware Version jyglkcpx.0071
Intel ≫ Nuc Kit Nuc7pjyhn Firmware Version jyglkcpx.0071
Intel ≫ Nuc Kit Nuc7pjyh Firmware Version jyglkcpx.0071
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.15% | 0.046 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| Intel | 7.5 | 0.8 | 6 |
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
|
CWE-92 DEPRECATED: Improper Sanitization of Custom Special Characters
This entry has been deprecated. It originally came from PLOVER, which sometimes defined "other" and "miscellaneous" categories in order to satisfy exhaustiveness requirements for taxonomies. Within the context of CWE, the use of a more abstract entry is preferred in mapping situations. CWE-75 is a more appropriate mapping.
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01028.html