Intel Corporation Nuc Kits vulnerabilities

4 known vulnerabilities affecting intel_corporation/nuc_kits.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4

Vulnerabilities

Page 1 of 1
CVE-2017-5721HIGHCVSS 7.5vBN0049 and below2017-10-11
CVE-2017-5721 [HIGH] CWE-20 CVE-2017-5721: Insufficient input validation in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BN Insufficient input validation in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to execute arbitrary code via manipulation of memory.
cvelistv5nvd
CVE-2017-5722HIGHCVSS 7.5vBN0049 and below2017-10-11
CVE-2017-5722 [HIGH] CWE-269 CVE-2017-5722: Incorrect policy enforcement in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH Incorrect policy enforcement in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows attackers with local or physical access to bypass enforcement of integrity protections via manipulation of firmware storage.
cvelistv5nvd
CVE-2017-5701HIGHCVSS 7.1vBN0049 and below2017-10-11
CVE-2017-5701 [HIGH] CVE-2017-5701: Insecure platform configuration in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5 Insecure platform configuration in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows an attacker with physical presence to run arbitrary code via unauthorized firmware modification during BIOS Recovery.
cvelistv5nvd
CVE-2017-5700HIGHCVSS 8.4vBN0049 and below2017-10-11
CVE-2017-5700 [HIGH] CWE-522 CVE-2017-5700: Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator and User passwords via access to password storage.
cvelistv5nvd