CVE-2020-12346: High severity intel battery life diagnostic tool vulnerability
Published Nov 12, 2020
·Updated
Improper permissions in the installer for the Intel(R) Battery Life Diagnostic Tool before version 1.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel Battery Life Diagnostic Tool<1.0.7
Event History
Nov 12, 2020
CVE Published
via MITRE·06:56 PM
Data Sourced
via MITRE·06:56 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-12346?
CVE-2020-12346 has been assigned a medium severity rating due to potential privilege escalation vulnerabilities.
2
How do I fix CVE-2020-12346?
To fix CVE-2020-12346, update the Intel Battery Life Diagnostic Tool to version 1.0.7 or later.
3
Who is affected by CVE-2020-12346?
CVE-2020-12346 affects users of the Intel Battery Life Diagnostic Tool versions prior to 1.0.7.
4
What type of vulnerability is CVE-2020-12346?
CVE-2020-12346 is classified as an improper permissions vulnerability that can allow privilege escalation.
5
Can CVE-2020-12346 be exploited remotely?
CVE-2020-12346 requires local access for exploitation, as it involves improper permissions in the installer.