CVE-2022-36789
Last modified
CVE-2022-36789 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. Improper access control in BIOS firmware for some Intel(R) NUC 10 Performance Kits and Intel(R) NUC 10 Performance Mini PCs before version FNCML357.0053 may allow a privileged user to potentially enable escalation of privilege via local access.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
Improper access control in BIOS firmware for some Intel(R) NUC 10 Performance Kits and Intel(R) NUC 10 Performance Mini PCs before version FNCML357.0053 may allow a privileged user to potentially enable escalation of privilege via local access.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Intel | Nuc 10 Performance Kit Nuc10i7fnhn Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i5fnkn Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i5fnhn Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i7fnkn Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i3fnhn Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i3fnkn Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Mini Pc Nuc10i5fnhja Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i3fnhf Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Mini Pc Nuc10i5fnhca Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Mini Pc Nuc10i3fnhfa Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i5fnhj Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i7fnhc Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Mini Pc Nuc10i7fnhja Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Mini Pc Nuc10i3fnhja Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i3fnk Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Mini Pc Nuc10i7fnhaa Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i5fnh Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i5fnk Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i7fnh Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i5fnhf Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Mini Pc Nuc10i7fnkpa Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Mini Pc Nuc10i5fnkpa Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i3fnh Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i7fnk Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i7fnkp Firmware | < fncml357.0053 |
| Intel | Nuc 10 Performance Kit Nuc10i5fnkp Firmware | < fncml357.0053 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-36789?
How severe is CVE-2022-36789?
How do I fix CVE-2022-36789?
Are you affected by CVE-2022-36789?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
