Aller au contenu

Fiche vulnérabilité

CVE-2023-32660 : faille élevée intel thunderbolt 3 controller firmware (CVSS 7.3)

Description

Uncontrolled search path in some Intel(R) NUC Kit NUC6i7KYK Thunderbolt(TM) 3 Firmware Update Tool installation software before version 46 may allow an authenticated user to potentially enable escalation of privilege via local access.

En bref

Sévérité
Élevée (CVSS 7.3)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
14 nov. 2023
Dernière mise à jour
17 juin 2026

Produits concernés

  • intel thunderbolt 3 controller firmware

Références

Rechercher une autre vulnérabilité dans la base CVE