HIGH✓ PATCH🇵🇱 Wersja polska

CVE-2022-36278

CVSS 8.2v3.1pub. 2023-02-16upd. 2024-11-21

Insufficient control flow management in the Intel(R) Battery Life Diagnostic Tool software before version 2.2.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
  • Intel Battery Life Diagnostic Tool

    APP
    Intel
    2.2.0
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
CWE
References

Related vulnerabilities

CVE-2023-30763HIGH7.2same product

Heap-based overflow in Intel(R) SoC Watch based software before version 2021.1 may allow a privileged user to ...

CVE-2022-34153HIGH8.2same product

Improper initialization in the Intel(R) Battery Life Diagnostic Tool software before version 2.2.0 may allow a...

CVE-2020-12346HIGH7.8same product

Improper permissions in the installer for the Intel(R) Battery Life Diagnostic Tool before version 1.0.7 may a...

CVE-2023-35060MEDIUM6.7same product

Uncontrolled search path in some Intel(R) Battery Life Diagnostic Tool software before version 2.3.1 may allow...

CVE-2022-38786MEDIUM6.7same product

Improper access control in some Intel Battery Life Diagnostic Tool software before version 2.2.1 may allow an ...