Description
Improper authentication in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Business, Intel(R) NUC Enthusiast, Intel(R) NUC Kits before version HN0067 may allow a privileged user to potentially enable escalation of privilege via local access.
Published: 2022-11-11
Score: 7.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-26958 Improper authentication in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Business, Intel(R) NUC Enthusiast, Intel(R) NUC Kits before version HN0067 may allow a privileged user to potentially enable escalation of privilege via local access.
History

Wed, 05 Feb 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Intel Nuc 8 Business Nuc8i7hnkqc Nuc 8 Business Nuc8i7hnkqc Firmware Nuc 8 Enthusiast Nuc8i7hvkva Nuc 8 Enthusiast Nuc8i7hvkva Firmware Nuc 8 Enthusiast Nuc8i7hvkvaw Nuc 8 Enthusiast Nuc8i7hvkvaw Firmware Nuc Kit Nuc8i7hnk Nuc Kit Nuc8i7hnk Firmware Nuc Kit Nuc8i7hvk Nuc Kit Nuc8i7hvk Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2025-02-05T20:25:15.523Z

Reserved: 2021-12-09T23:52:03.733Z

Link: CVE-2022-21794

cve-icon Vulnrichment

Updated: 2024-08-03T02:53:36.203Z

cve-icon NVD

Status : Modified

Published: 2022-11-11T16:15:11.780

Modified: 2025-02-05T21:15:14.367

Link: CVE-2022-21794

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses