CVE-2023-39432

Improper access control element in some Intel(R) Ethernet tools and driver install software, before versions 28.2, may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:intel:ethernet_adapter_complete_driver:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:15

Type Values Removed Values Added
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00993.html - Vendor Advisory () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00993.html - Vendor Advisory
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 6.7

24 Oct 2024, 19:13

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.7
v2 : unknown
v3 : 7.8
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00993.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00993.html - Vendor Advisory
CPE cpe:2.3:a:intel:ethernet_adapter_complete_driver:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
First Time Intel
Intel ethernet Adapter Complete Driver

14 Feb 2024, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-14 14:16

Updated : 2024-11-21 08:15


NVD link : CVE-2023-39432

Mitre link : CVE-2023-39432

CVE.ORG link : CVE-2023-39432


JSON object : View

Products Affected

intel

  • ethernet_adapter_complete_driver
CWE
CWE-284

Improper Access Control

NVD-CWE-noinfo