CVE-2022-27493

CWE-6653 documents3 sources
Severity
7.8HIGH
EPSS
0.1%
top 70.64%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 18
Latest updateAug 19

Description

Improper initialization in the firmware for some Intel(R) NUC Laptop Kits before version BC0076 may allow a privileged user to potentially enable an escalation of privilege via local access.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages3 packages

CVEListV5intel(r)_nuc_laptop_kitsbefore version BC0076

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vcmr-24jv-7v64: Improper initialization in the firmware for some Intel(R) NUC Laptop Kits before version BC0076 may allow a privileged user to potentially enable an e2022-08-19
CVEList
CVE-2022-27493: Improper initialization in the firmware for some Intel(R) NUC Laptop Kits before version BC0076 may allow a privileged user to potentially enable an e2022-08-18
CVE-2022-27493 (HIGH CVSS 7.8) | Improper initialization in the firm | cvebase.io