Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-20890

Опубликовано: 11 авг. 2026
Источник: nvd
CVSS3: 7.3
EPSS Низкий

Описание

Improper privilege management for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (high) impacts.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:intel:proset\/wireless_wifi:*:*:*:*:*:*:*:*
Версия до 24.30.0 (исключая)

Одно из

cpe:2.3:h:intel:killer_wi-fi_6_ax1650i\/s:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:killer_wi-fi_6e_ax1675i\/s:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:killer_wi-fi_6e_ax1675x\/w:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:killer_wi-fi_7_be1750i\/s:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:killer_wi-fi_7_be1750x\/w:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:killer_wi-fi_7_be1775i\/s:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wi-fi_6_ax200:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wi-fi_6_ax201:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wi-fi_6_ax210:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wi-fi_6e_ax211:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wi-fi_7_be200:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wi-fi_7_be201:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wi-fi_7_be211:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wi-fi_7_be213:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wireless-ac_9461:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wireless-ac_9462:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:wireless-ac_9560:-:*:*:*:*:*:*:*

EPSS

Процентиль: 2%
0.0012
Низкий

7.3 High

CVSS3

Дефекты

CWE-269
CWE-269

Связанные уязвимости

CVSS3: 7.3
github
около 1 месяца назад

Improper privilege management for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (high) impacts.

EPSS

Процентиль: 2%
0.0012
Низкий

7.3 High

CVSS3

Дефекты

CWE-269
CWE-269