CVE-2022-37334

CWE-6653 documents3 sources
Severity
7.8HIGH
EPSS
0.1%
top 82.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 11

Description

Improper initialization in BIOS firmware for some Intel(R) NUC 11 Pro Kits and Intel(R) NUC 11 Pro Boards before version TNTGL357.0064 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:HExploitability: 1.1 | Impact: 6.0

Affected Packages12 packages

Patches

🔴Vulnerability Details

2
CVEList
CVE-2022-37334: Improper initialization in BIOS firmware for some Intel(R) NUC 11 Pro Kits and Intel(R) NUC 11 Pro Boards before version TNTGL3572022-11-11
GHSA
GHSA-7x5c-hvwv-chx9: Improper initialization in BIOS firmware for some Intel(R) NUC 11 Pro Kits and Intel(R) NUC 11 Pro Boards before version TNTGL3572022-11-11
CVE-2022-37334 (HIGH CVSS 7.8) | Improper initialization in BIOS fir | cvebase.io