CVE-2023-35060: High severity intel battery life diagnostic tool vulnerability
Published Feb 14, 2024
·Updated
Uncontrolled search path in some Intel(R) Battery Life Diagnostic Tool software before version 2.3.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel Battery Life Diagnostic Tool<2.3.1
Event History
Feb 14, 2024
CVE Published
via MITRE·01:38 PM
Data Sourced
via MITRE·01:38 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-35060?
CVE-2023-35060 is classified as a moderate-severity vulnerability due to potential escalation of privilege.
2
How do I fix CVE-2023-35060?
To fix CVE-2023-35060, upgrade the Intel Battery Life Diagnostic Tool to version 2.3.1 or later.
3
Who is affected by CVE-2023-35060?
CVE-2023-35060 affects users of Intel Battery Life Diagnostic Tool versions prior to 2.3.1.
4
What type of vulnerability is CVE-2023-35060?
CVE-2023-35060 is an uncontrolled search path vulnerability that may allow privilege escalation.
5
Can CVE-2023-35060 be exploited remotely?
CVE-2023-35060 requires local access, so it cannot be exploited remotely.