CVE-2023-35003CWE-249

Path transversal in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via…

Medium · published February 14, 2024

CVSS v3.1
6.7
EPSS
0%
Percentile
11.7
In the wild
Unconfirmed
What it is

Path transversal in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via local access.

The record
Technical detail
CVSS v3.1
6.7 · MEDIUM
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00214 · 11.7th percentile
Weakness
CWE-249 · DEPRECATED: Often Misused: Path Manipulation
Published
2024-02-14T13:38Z
EPSS history
Timeline
  • 14 FEB 13:38Z
    Path transversal in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via…
    cvelistv5