CVE-2022-27229: Path Traversal
Path transversal in some Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-27229?
CVE-2022-27229 is a vulnerability that allows an authenticated user to potentially enable escalation of privilege via local access in certain Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1.
How severe is CVE-2022-27229?
CVE-2022-27229 has a severity score of 7.8 (high).
Which software versions are affected by CVE-2022-27229?
The Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 is affected by CVE-2022-27229.
How can an attacker exploit CVE-2022-27229?
An attacker can exploit CVE-2022-27229 by leveraging local access and potentially enabling escalation of privilege.
Is there a fix or patch available for CVE-2022-27229?
Yes, updating the Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software to version 1.79.1.1 or later will fix the vulnerability.