7.3

CVE-2026-20890

Improper privilege management for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (high) impacts.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Proset/wireless Wifi Version < 24.30.0
   Intel ≫ Wi-fi 6 Ax200 Version -
   Intel ≫ Wi-fi 6 Ax201 Version -
   Intel ≫ Wi-fi 6 Ax210 Version -
   Intel ≫ Wi-fi 6e Ax211 Version -
   Intel ≫ Wi-fi 7 Be200 Version -
   Intel ≫ Wi-fi 7 Be201 Version -
   Intel ≫ Wi-fi 7 Be211 Version -
   Intel ≫ Wi-fi 7 Be213 Version -
   Intel ≫ Wireless-ac 9461 Version -
   Intel ≫ Wireless-ac 9462 Version -
   Intel ≫ Wireless-ac 9560 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.12% 0.025
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.3 1.4 5.3
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:H
Intel 7.1 0 0
CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:L/SI:L/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
CWE-269 Improper Privilege Management

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01468.html
Vendor Advisory