CVE-2020-12345: High severity intel data center manager vulnerability
Improper permissions in the installer for the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-12345.
What is the title of this vulnerability?
The title of this vulnerability is Improper permissions in the installer for the Intel(R) Data Center Manager Console before version 3.6.2.
What is the description of this vulnerability?
The vulnerability involves improper permissions in the installer for the Intel(R) Data Center Manager Console before version 3.6.2, allowing an authenticated user to potentially enable escalation of privilege via local access.
What software is affected by this vulnerability?
The Intel Data Center Manager Console before version 3.6.2 is affected by this vulnerability.
How severe is this vulnerability?
This vulnerability has a severity rating of 7.8 (out of 10), indicating high severity.
How can I fix this vulnerability?
To fix this vulnerability, update to version 3.6.2 or later of the Intel Data Center Manager Console.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability in the advisory published by Intel: [link](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00430)
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-281.