Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-74j5-mc44-j854

Опубликовано: 11 авг. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

Unquoted search path in the software installer for the System Firmware Update Utility (SysFwUpdt) for some Intel(R) Server Boards and Intel(R) Server Systems Based on Intel(R) 621A Chipset before version 16.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.

Unquoted search path in the software installer for the System Firmware Update Utility (SysFwUpdt) for some Intel(R) Server Boards and Intel(R) Server Systems Based on Intel(R) 621A Chipset before version 16.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.

EPSS

Процентиль: 26%
0.00091
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-427
CWE-428

Связанные уязвимости

CVSS3: 6.7
nvd
больше 2 лет назад

Unquoted search path in the software installer for the System Firmware Update Utility (SysFwUpdt) for some Intel(R) Server Boards and Intel(R) Server Systems Based on Intel(R) 621A Chipset before version 16.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.

EPSS

Процентиль: 26%
0.00091
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-427
CWE-428