Описание
Improper authentication in some Intel(R) NUC Kits NUC7PJYH and NUC7CJYH Realtek* SD Card Reader Driver installation software before version 10.0.19041.29098 may allow an authenticated user to potentially enable escalation of privilege via local access.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 10.0.19041.29098 (исключая)
Одновременно
cpe:2.3:a:intel:realtek_sd_card_reader_driver:*:*:*:*:*:*:*:*
Одно из
cpe:2.3:h:intel:nuc_kit_nuc7cjyh:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc7pjyh:-:*:*:*:*:*:*:*
EPSS
Процентиль: 30%
0.00113
Низкий
6.7 Medium
CVSS3
7.8 High
CVSS3
Дефекты
CWE-287
CWE-287
Связанные уязвимости
CVSS3: 6.7
github
около 2 лет назад
Improper authentication in some Intel(R) NUC Kits NUC7PJYH and NUC7CJYH Realtek* SD Card Reader Driver installation software before version 10.0.19041.29098 may allow an authenticated user to potentially enable escalation of privilege via local access.
EPSS
Процентиль: 30%
0.00113
Низкий
6.7 Medium
CVSS3
7.8 High
CVSS3
Дефекты
CWE-287
CWE-287