CVE-2023-31271

Severity
7.8HIGH
EPSS
0.1%
top 75.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 14
Latest updateOct 28

Description

Improper access control in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5intel(r)_vroc_softwarebefore version 8.0.8.1001
NVDintel/virtual_raid_on_cpu< 8.0.8.1001

🔴Vulnerability Details

2
GHSA
GHSA-368v-5vcp-j279: Improper access control in some Intel(R) VROC software before version 82024-10-28
CVEList
CVE-2023-31271: Improper access control in some Intel(R) VROC software before version 82024-02-14
CVE-2023-31271 (HIGH CVSS 7.8) | Improper access control in some Int | cvebase.io