cbcvebase.
CVE-2021-0064
published 2021-11-17

CVE-2021-0064: Insecure inherited permissions in the Intel(R) PROSet/Wireless WiFi software installer for Windows 10 before version 22.40 may allow an authenticated user to…

PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.21%
10.9th percentile
Insecure inherited permissions in the Intel(R) PROSet/Wireless WiFi software installer for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.

Affected

13 ranges
VendorProductVersion rangeFixed in
intel7265_firmware< 22.4022.40
intelac_3165_firmware< 22.4022.40
intelac_3168_firmware< 22.4022.40
intelac_8260_firmware< 22.4022.40
intelac_8265_firmware< 22.4022.40
intelac_9260_firmware< 22.4022.40
intelac_9461_firmware< 22.4022.40
intelac_9462_firmware< 22.4022.40
intelac_9560_firmware< 22.4022.40
intelax200_firmware< 22.4022.40
intelax201_firmware< 22.4022.40
intelax210_firmware< 22.4022.40
intel_prosetwireless_wifi_software_installer_for_windows_10

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.