CVE-2020-12315: Path Traversal
Published Nov 12, 2020
·Updated
Path traversal in the Intel(R) EMA before version 1.3.3 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
Affected Software
1 affected component
Intel Endpoint Management Assistant<1.3.3
Remediation
Event History
Nov 12, 2020
CVE Published
via MITRE·06:14 PM
Data Sourced
via MITRE·06:14 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-12315?
CVE-2020-12315 is a path traversal vulnerability in the Intel Endpoint Management Assistant before version 1.3.3.
2
How can an unauthenticated user exploit CVE-2020-12315?
An unauthenticated user can potentially enable escalation of privilege via network access.
3
Is CVE-2020-12315 a critical vulnerability?
Yes, CVE-2020-12315 has a severity rating of critical.
4
Which software versions are affected by CVE-2020-12315?
Versions up to and excluding 1.3.3 of Intel Endpoint Management Assistant are affected by CVE-2020-12315.
5
How can I fix CVE-2020-12315?
Upgrade Intel Endpoint Management Assistant to version 1.3.3 or higher to mitigate the vulnerability.