CVE-2023-33870

Severity
7.8HIGH
EPSS
0.1%
top 84.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 14
Latest updateOct 25

Description

Insecure inherited permissions in some Intel(R) Ethernet tools and driver install software may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

🔴Vulnerability Details

2
GHSA
GHSA-wmvc-26px-x5xp: Insecure inherited permissions in some Intel(R) Ethernet tools and driver install software may allow an authenticated user to potentially enable escal2024-10-25
CVEList
CVE-2023-33870: Insecure inherited permissions in some Intel(R) Ethernet tools and driver install software may allow an authenticated user to potentially enable escal2024-02-14
CVE-2023-33870 (HIGH CVSS 7.8) | Insecure inherited permissions in s | cvebase.io