CVE-2026-20891: Medium severity vulnerability
Improper authentication for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable local code execution. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (low) and availability (low) impacts.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20891?
CVE-2026-20891 has a risk rating of 65, indicating a moderate level of severity.
How do I fix CVE-2026-20891?
To fix CVE-2026-20891, ensure that you update your Intel PROSet/Wireless WiFi Software to the latest version provided by Intel.
What type of attack does CVE-2026-20891 enable?
CVE-2026-20891 enables an escalation of privilege attack that allows local code execution by unprivileged software adversaries.
Who is affected by CVE-2026-20891?
CVE-2026-20891 affects users of Intel PROSet/Wireless WiFi Software for Windows who may have unpatched versions.
What is the impact of CVE-2026-20891?
The impact of CVE-2026-20891 is that it can allow unauthorized access or control over the system due to improper authentication.