← Back

CVE-2023-22841

nvd nist
Published: Aug 11, 2023Modified: Nov 21, 2024

JSON object

Loading...
7.3
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.3 / Impact: 5.9
Source: NVD

Description

Unquoted search path in the software installer for the System Firmware Update Utility (SysFwUpdt) for some Intel(R) Server Boards and Intel(R) Server Systems Based on Intel(R) 621A Chipset before version 16.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.

Affected (1)

1 product
Server Firmware Update Utility
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 16.0.7
Running on/withPlatform Versions
Intel
C621a
All versions

References (2)

Timeline

No history available yet.