CVE-2021-0067
published 2021-06-09CVE-2021-0067: Improper access control in system firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.
PriorityP423medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.24%
15.6th percentile
Improper access control in system firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.
Affected
77 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| intel | nuc_10_performance_kit_nuc10i3fnh_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i3fnhf_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i3fnk_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i5fnh_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i5fnhf_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i5fnhj_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i5fnk_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i5fnkp_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i7fnh_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i7fnhc_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i7fnk_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_kit_nuc10i7fnkp_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_mini_pc_nuc10i3fnhfa_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_mini_pc_nuc10i3fnhja_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_mini_pc_nuc10i5fnhca_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_mini_pc_nuc10i5fnhja_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_mini_pc_nuc10i5fnkpa_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_mini_pc_nuc10i7fnhaa_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_mini_pc_nuc10i7fnhja_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_10_performance_mini_pc_nuc10i7fnkpa_firmware | < fncml.0050 | fncml.0050 |
| intel | nuc_11_compute_element_cm11ebc4_firmware | < ebtgl357.0045 | ebtgl357.0045 |
| intel | nuc_11_compute_element_cm11ebi38w_firmware | < ebtgl357.0045 | ebtgl357.0045 |
| intel | nuc_11_compute_element_cm11ebi58w_firmware | < ebtgl357.0045 | ebtgl357.0045 |
| intel | nuc_11_compute_element_cm11ebi716w_firmware | < ebtgl357.0045 | ebtgl357.0045 |
| intel | nuc_11_enthusiast_kit_nuc11phki7c_firmware | < phtgl579.0056 | phtgl579.0056 |
CVSS provenance
nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-06-09
Published