First published: Fri Aug 11 2023(Updated: )
Unquoted search path in the software installer for the System Firmware Update Utility (SysFwUpdt) for some Intel(R) Server Boards and Intel(R) Server Systems Based on Intel(R) 621A Chipset before version 16.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
<16.0.7 | ||
Intel C621a | ||
Intel Server Firmware Update Utility | <16.0.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-22841 is a vulnerability in the System Firmware Update Utility (SysFwUpdt) for some Intel Server Boards and Intel Server Systems based on the Intel 621A Chipset, before version 16.0.7, that allows an authenticated user to potentially enable escalation of privilege via local access.
CVE-2023-22841 has a severity score of 7.3, which is considered high.
CVE-2023-22841 affects the System Firmware Update Utility (SysFwUpdt) for some Intel Server Boards and Intel Server Systems based on the Intel 621A Chipset before version 16.0.7.
An authenticated user can potentially enable escalation of privilege by exploiting CVE-2023-22841 through local access.
More information about CVE-2023-22841 can be found at the following reference: [Intel Security Advisory Intel-SA-00830](http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00830.html)