CVE-2023-32278CWE-249

Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver installation…

Medium · published November 14, 2023

CVSS v3.1
6.7
EPSS
0%
Percentile
12.5
In the wild
Unconfirmed
What it is

Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver installation software before version 1.0.1.7 for Intel(R) NUC Software Studio may allow an authenticated user to potentially enable escalation of privilege via local access.

The record
Technical detail
CVSS v3.1
6.7 · MEDIUM
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00221 · 12.5th percentile
Weakness
CWE-249 · DEPRECATED: Often Misused: Path Manipulation
Published
2023-11-14T19:04Z
EPSS history
Timeline
  • 14 NOV 19:04Z
    Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver installation…
    cvelistv5