CVE-2021-33090

Incorrect default permissionsin the software installer for the Intel(R) NUC HDMI Firmware Update Tool for NUC10i3FN, NUC10i5FN, NUC10i7FN before version 1.78.2.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:intel:nuc_hdmi_firmware_update_tool:*:*:*:*:*:*:*:*
OR cpe:2.3:h:intel:nuc10i3fn:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc10i5fn:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc10i7fn:-:*:*:*:*:*:*:*

History

19 Nov 2021, 19:20

Type Values Removed Values Added
CWE CWE-276
CPE cpe:2.3:a:intel:nuc_hdmi_firmware_update_tool:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc10i5fn:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc10i3fn:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc10i7fn:-:*:*:*:*:*:*:*
References (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00568.html - (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00568.html - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 7.2
v3 : 7.8

17 Nov 2021, 19:24

Type Values Removed Values Added
New CVE

Information

Published : 2021-11-17 19:15

Updated : 2024-02-04 22:08


NVD link : CVE-2021-33090

Mitre link : CVE-2021-33090

CVE.ORG link : CVE-2021-33090


JSON object : View

Products Affected

intel

  • nuc10i5fn
  • nuc10i7fn
  • nuc10i3fn
  • nuc_hdmi_firmware_update_tool
CWE
CWE-276

Incorrect Default Permissions