CVE-2023-32278CWE-249
Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver installation…
Medium · published November 14, 2023
What it is
Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver installation software before version 1.0.1.7 for Intel(R) NUC Software Studio may allow an authenticated user to potentially enable escalation of privilege via local access.
The record
Technical detail
- CVSS v3.1
- 6.7 · MEDIUM
- Vector
- CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
- CVSS v4.0
- Not supplied
- EPSS
- 0.00221 · 12.5th percentile
- Weakness
- CWE-249 · DEPRECATED: Often Misused: Path Manipulation
- Published
- 2023-11-14T19:04Z
EPSS history
Timeline