CVE-2023-34997: High severity intel server configuration utility vulnerability
Published Nov 14, 2023
·Updated
Insecure inherited permissions in the installer for some Intel Server Configuration Utility software before version 16.0.9 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel Server Configuration Utility<16.0.9
Event History
Nov 14, 2023
CVE Published
07:04 PM
Data Sourced
07:04 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-34997.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Insecure inherited permissions in the installer for some Intel Server Configuration Utility software...'.
3
What is the severity of CVE-2023-34997?
CVE-2023-34997 has a severity score of 7.8, which is categorized as high.
4
How can an authenticated user potentially exploit this vulnerability?
An authenticated user can potentially enable escalation of privilege via local access.
5
What is the affected software for CVE-2023-34997?
The affected software for CVE-2023-34997 is Intel Server Configuration Utility before version 16.0.9.