CVE-2022-41998: High severity intel data center manager vulnerability
Published May 10, 2023
·Updated
Uncontrolled search path in the Intel(R) DCM software before version 5.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel Data Center Manager<5.1
Remediation
Event History
May 10, 2023
CVE Published
via MITRE·01:17 PM
Data Sourced
via MITRE·01:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-41998?
The severity of CVE-2022-41998 is high with a severity value of 7.8.
2
What is the vulnerability description of CVE-2022-41998?
CVE-2022-41998 is an uncontrolled search path vulnerability in the Intel(R) DCM software before version 5.1, which may allow an authenticated user to potentially enable escalation of privilege via local access.
3
What software is affected by CVE-2022-41998?
The Intel Data Center Manager software before version 5.1 is affected by CVE-2022-41998.
4
How can an authenticated user exploit CVE-2022-41998?
An authenticated user can potentially exploit CVE-2022-41998 by leveraging local access to enable escalation of privilege.
5
Is there a fix for CVE-2022-41998?
Yes, updating the Intel DCM software to version 5.1 or above will fix CVE-2022-41998.