First published: Fri May 12 2023(Updated: )
Uncontrolled search path in the Intel(R) Trace Analyzer and Collector before version 2020 update 3 may allow an authenticated user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Trace Analyzer and Collector | <2020 | |
Intel Trace Analyzer and Collector | =2020-update1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-31197 is a vulnerability in the Intel(R) Trace Analyzer and Collector software before version 2020 update 3 that may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2023-31197 has a severity score of 7.8, which is considered high.
The Intel(R) Trace Analyzer and Collector software versions 2020 and 2020-update1 are affected by CVE-2023-31197.
An authenticated user with local access to the Intel(R) Trace Analyzer and Collector software before version 2020 update 3 may exploit CVE-2023-31197 to enable escalation of privilege.
You can find more information about CVE-2023-31197 on the Intel Security Center Advisory page: [link](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00475.html).