Path transversal in some Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
References
| Link | Resource |
|---|---|
| https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00908.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Information
Published : 2023-11-14 19:15
Updated : 2023-11-20 20:53
NVD link : CVE-2022-27229
Mitre link : CVE-2022-27229
JSON object : View
Products Affected
intel
- nuc_7_business_nuc7i5dnkpc
- nuc_kit_nuc7i7dnke
- hdmi_firmware
- nuc_kit_nuc7i5dnke
- nuc_7_business_nuc7i3dnhnc
- nuc_kit_nuc7i3dnke
- nuc_kit_nuc7i5dnhe
- nuc_7_business_nuc7i3dnktc
- nuc_kit_nuc7i3dnhe
- nuc_kit_nuc7i7dnhe
- nuc_7_business_nuc7i5dnkpu
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
