CVE-2019-11094

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
17/05/2019
Last modified:
21/05/2019

Description

Insufficient input validation in system firmware for Intel (R) NUC Kit may allow an authenticated user to potentially enable escalation of privilege, denial of service, and/or information disclosure via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:nuc_kit_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_d33217gke:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_d53427rke:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_d54250wyb:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_de3815tybe:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_dn2820fykh:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc5cpyh:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc5i3myhe:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc5i5myhe:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc5i7ryh:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc5pgyh:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc6cays:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc6i5syh:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc6i7kyk:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_kit_nuc7cjyh:-:*:*:*:*:*:*:*