MEDIUM✓ PATCH🇵🇱 Wersja polska

CVE-2022-38786

CVSS 6.7v3.1pub. 2023-11-14upd. 2024-11-21

Improper access control in some Intel Battery Life Diagnostic Tool software before version 2.2.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
  • Intel Battery Life Diagnostic Tool

    APP
    Intel
    < 2.2.1
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
CWE
References

Related vulnerabilities

CVE-2023-30763HIGH7.2same product

Heap-based overflow in Intel(R) SoC Watch based software before version 2021.1 may allow a privileged user to ...

CVE-2022-34153HIGH8.2same product

Improper initialization in the Intel(R) Battery Life Diagnostic Tool software before version 2.2.0 may allow a...

CVE-2022-36278HIGH8.2same product

Insufficient control flow management in the Intel(R) Battery Life Diagnostic Tool software before version 2.2....

CVE-2020-12346HIGH7.8same product

Improper permissions in the installer for the Intel(R) Battery Life Diagnostic Tool before version 1.0.7 may a...

CVE-2023-35060MEDIUM6.7same product

Uncontrolled search path in some Intel(R) Battery Life Diagnostic Tool software before version 2.3.1 may allow...