CVE-2022-29887: XSS
Cross-site Scripting (XSS) in some Intel(R) Manageability Commander software before version 2.3 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this cross-site scripting (XSS) vulnerability?
The vulnerability ID for this cross-site scripting (XSS) vulnerability is CVE-2022-29887.
What is the severity of CVE-2022-29887?
The severity of CVE-2022-29887 is critical with a CVSS score of 9.6.
Which software versions are affected by CVE-2022-29887?
Some versions of Intel(R) Manageability Commander software before version 2.3 are affected by CVE-2022-29887.
How can an unauthenticated user potentially exploit CVE-2022-29887?
An unauthenticated user can potentially exploit CVE-2022-29887 via network access, enabling escalation of privilege.
Where can I find more information about CVE-2022-29887?
More information about CVE-2022-29887 can be found on the Intel Security Center Advisory page: http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00893.html