- Description
- Improper authentication in some Intel(R) NUC Kit NUC11PH USB firmware installation software before version 1.1 for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
- Source
- secure@intel.com
- NVD status
- Modified
CVSS 3.1
- Type
- Primary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:intel:usb_firmware:*:*:*:*:*:windows:*:*",
"vulnerable": true,
"matchCriteriaId": "09AE84B3-CF6A-49F8-8C20-3CC6CD3B4E7A",
"versionEndExcluding": "1.1"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:intel:nuc_11_enthusiast_kit_nuc11phki7c:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "B29DE251-B4BC-4716-99DD-35F4FEE788F0"
},
{
"criteria": "cpe:2.3:h:intel:nuc_11_enthusiast_mini_pc_nuc11phki7caa:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "6319E7BC-693D-44A9-A342-65E94E477B81"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
]