cbcvebase.
CVE-2021-0067
published 2021-06-09

CVE-2021-0067: Improper access control in system firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.

PriorityP423medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.24%
15.6th percentile
Improper access control in system firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.

Affected

77 ranges· showing 25
VendorProductVersion rangeFixed in
intelnuc_10_performance_kit_nuc10i3fnh_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i3fnhf_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i3fnk_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i5fnh_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i5fnhf_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i5fnhj_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i5fnk_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i5fnkp_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i7fnh_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i7fnhc_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i7fnk_firmware< fncml.0050fncml.0050
intelnuc_10_performance_kit_nuc10i7fnkp_firmware< fncml.0050fncml.0050
intelnuc_10_performance_mini_pc_nuc10i3fnhfa_firmware< fncml.0050fncml.0050
intelnuc_10_performance_mini_pc_nuc10i3fnhja_firmware< fncml.0050fncml.0050
intelnuc_10_performance_mini_pc_nuc10i5fnhca_firmware< fncml.0050fncml.0050
intelnuc_10_performance_mini_pc_nuc10i5fnhja_firmware< fncml.0050fncml.0050
intelnuc_10_performance_mini_pc_nuc10i5fnkpa_firmware< fncml.0050fncml.0050
intelnuc_10_performance_mini_pc_nuc10i7fnhaa_firmware< fncml.0050fncml.0050
intelnuc_10_performance_mini_pc_nuc10i7fnhja_firmware< fncml.0050fncml.0050
intelnuc_10_performance_mini_pc_nuc10i7fnkpa_firmware< fncml.0050fncml.0050
intelnuc_11_compute_element_cm11ebc4_firmware< ebtgl357.0045ebtgl357.0045
intelnuc_11_compute_element_cm11ebi38w_firmware< ebtgl357.0045ebtgl357.0045
intelnuc_11_compute_element_cm11ebi58w_firmware< ebtgl357.0045ebtgl357.0045
intelnuc_11_compute_element_cm11ebi716w_firmware< ebtgl357.0045ebtgl357.0045
intelnuc_11_enthusiast_kit_nuc11phki7c_firmware< phtgl579.0056phtgl579.0056

CVSS provenance

nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.