cbcvebase.
CVE-2022-33176
published 2022-11-11

CVE-2022-33176: Improper input validation in BIOS firmware for some Intel(R) NUC 11 Performance kits and Intel(R) NUC 11 Performance Mini PCs before version PATGL357.0042 may…

PriorityP425medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.22%
13.1th percentile
Improper input validation in BIOS firmware for some Intel(R) NUC 11 Performance kits and Intel(R) NUC 11 Performance Mini PCs before version PATGL357.0042 may allow a privileged user to potentially enable escalation of privilege via local access.

Affected

11 ranges
VendorProductVersion rangeFixed in
intelnuc_11_performance_kit_nuc11pahi30z_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_kit_nuc11pahi3_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_kit_nuc11pahi50z_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_kit_nuc11pahi5_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_kit_nuc11pahi70z_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_kit_nuc11pahi7_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_kit_nuc11paki3_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_kit_nuc11paki5_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_kit_nuc11paki7_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_mini_pc_nuc11paqi50wa_firmware< patgl357.0042patgl357.0042
intelnuc_11_performance_mini_pc_nuc11paqi70qa_firmware< patgl357.0042patgl357.0042
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.