Path transversal in some Intel(R) NUC Uniwill Service Driver for Intel(R) NUC M15 Laptop Kits - LAPRC510 & LAPRC710 Uniwill Service Driver installation software before version 1.0.1.7 for Intel(R) NUC Software Studio may allow an authenticated user to potentially enable escalation of privilege via local access.
CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:HIntel Nuc M15 Laptop Kit Evo Laprc510
HWIntelall versionsIntel Nuc M15 Laptop Kit Evo Laprc710
HWIntelall versionsIntel Nuc M15 Laptop Kit Laprc510
HWIntelall versionsIntel Nuc M15 Laptop Kit Laprc710
HWIntelall versionsIntel Nuc Uniwill Service Driver
APPIntel< 1.0.1.7
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
Path Traversal
Related vulnerabilities
CVE-2024-25561MEDIUM5.4same product
Insecure inherited permissions in some Intel(R) HID Event Filter software installers before version 2.2.2.1 ma...
CVE-2023-22444MEDIUM6.0same product
Improper initialization in some Intel(R) NUC 13 Extreme Compute Element, Intel(R) NUC 13 Extreme Kit, Intel(R)...
CVE-2021-45046CRITICAL9.0⚠ KEVPL ✓same vendor
Apache Log4j: niekompletna naprawa CVE-2021-44228 — RCE przez JNDI Lookup
CVE-2021-44228CRITICAL10.0⚠ KEVPL ✓same vendor
Apache Log4j2 Log4Shell — RCE przez podatną funkcję JNDI lookup
CVE-2017-5689CRITICAL9.8⚠ KEVPL ✓same vendor
Privilege Escalation w Intel AMT/ISM/SBT — nieautoryzowany dostęp systemowy