CVE-2025-24923
Severity CVSS v4.0:
MEDIUM
Type:
CWE-427
Uncontrolled Search Path Element
Publication date:
12/08/2025
Last modified:
13/08/2025
Description
Uncontrolled search path in some Intel(R) AI for Enterprise Retrieval-augmented Generation software may allow an authenticated user to potentially enable escalation of privilege via local access.
Impact
Base Score 4.0
5.40
Severity 4.0
MEDIUM
Base Score 3.x
6.70
Severity 3.x
MEDIUM



