Fiche vulnérabilité
CVE-2023-25075 : faille élevée intel server configuration utility (CVSS 7.8)
Description
Unquoted search path in the installer for some Intel Server Configuration Utility software before version 16.0.9 may allow an authenticated user to potentially enable escalation of privilege via local access.
En bref
- Sévérité
- Élevée (CVSS 7.8)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 14 nov. 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- intel server configuration utility