First published: Wed Nov 17 2021(Updated: )
Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit Keyboard LED Service driver pack before version 1.0.0.4 may allow an authenticated user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Nuc M15 Laptop Kit Keyboard Led Service Driver Pack | <1.0.0.4 | |
Intel Nuc M15 Laptop Kit Lapbc510 | ||
Intel Nuc M15 Laptop Kit Lapbc710 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-33094.
The title of this vulnerability is 'Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit Keyboard LED Ser…'.
The description of this vulnerability is 'Insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit Keyboard LED Service driver pack before version 1.0.0.4 may allow an authenticated user to potentially enable escalation of privilege via local access.'
The severity of CVE-2021-33094 is high with a CVSS score of 7.8.
An authenticated user may be able to enable escalation of privilege via local access by exploiting the insecure inherited permissions in the installer for the Intel(R) NUC M15 Laptop Kit Keyboard LED Service driver pack before version 1.0.0.4.