- Description
- Insertion of sensitive information into log file in some Intel(R) On Demand software before versions 1.16.2, 2.1.1, 3.1.0 may allow an authenticated user to potentially enable information disclosure via local access.
- Source
- secure@intel.com
- NVD status
- Modified
CVSS 3.1
- Type
- Primary
- Base score
- 5.5
- Impact score
- 3.6
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- Severity
- MEDIUM
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:intel:on_demand:1.16.1.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1618669D-0A0D-47E7-878E-C0142672B993"
},
{
"criteria": "cpe:2.3:a:intel:on_demand:2.1.0.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CA9FFA36-3E1F-4928-8BB5-03EB2DD22761"
},
{
"criteria": "cpe:2.3:a:intel:on_demand:3.0.1.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5AD16A51-B19B-4760-B89F-23F4E6A4E8A6"
}
],
"operator": "OR"
}
]
}
]