CVE-2022-37327
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/05/2023
Last modified:
07/11/2023
Description
Improper input validation in BIOS firmware for Intel(R) NUC, Intel(R) NUC Performance Kit, Intel(R) NUC Performance Mini PC, Intel(R) NUC 8 Compute Element, Intel(R) NUC Pro Kit, Intel(R) NUC Pro Board, Intel(R) NUC 11 Compute Element, Intel(R) NUC 12 Compute Element, Intel(R) NUC Extreme, Intel(R) NUC 12 Extreme Compute Element, Intel(R) NUC Laptop Kit, Intel(R) NUC Enthusiast, Intel(R) NUC Essential, Intel(R) NUC Laptop Kit, Intel(R) NUC Extreme Compute Element, Intel(R) NUC Boards, Intel(R) NUC Pro Compute Element, Intel(R) NUC Rugged may allow a privileged user to enable information disclosure via local access.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:h:intel:nuc10i3fnh:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:intel:nuc10i3fnh_firmware:*:*:*:*:*:*:*:* | fncml357.0059 (excluding) | |
cpe:2.3:h:intel:nuc10i3fnhf:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:intel:nuc10i3fnhf_firmware:*:*:*:*:*:*:*:* | fncml357.0059 (excluding) | |
cpe:2.3:h:intel:nuc10i3fnhfa:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:intel:nuc10i3fnhfa_firmware:*:*:*:*:*:*:*:* | fncml357.0059 (excluding) | |
cpe:2.3:h:intel:nuc10i3fnhja:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:intel:nuc10i3fnhja_firmware:*:*:*:*:*:*:*:* | fncml357.0059 (excluding) | |
cpe:2.3:h:intel:nuc10i3fnhn:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:intel:nuc10i3fnhn_firmware:*:*:*:*:*:*:*:* | fncml357.0059 (excluding) | |
cpe:2.3:h:intel:nuc10i3fnk:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:intel:nuc10i3fnk_firmware:*:*:*:*:*:*:*:* | fncml357.0059 (excluding) | |
cpe:2.3:h:intel:nuc10i3fnkn:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:intel:nuc10i3fnkn_firmware:*:*:*:*:*:*:*:* | fncml357.0059 (excluding) | |
cpe:2.3:h:intel:nuc10i5fnh:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page