CVE-2023-32279
Last modified
CVE-2023-32279 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Improper access control in user mode driver for some Intel(R) Connectivity Performance Suite before version 2.1123.214.2 may allow unauthenticated user to potentially enable information disclosure via network access.. EPSS estimates a 0.61% chance of exploitation in the next 30 days.
Description
Improper access control in user mode driver for some Intel(R) Connectivity Performance Suite before version 2.1123.214.2 may allow unauthenticated user to potentially enable information disclosure via network access.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Intel | Connectivity Performance Suite | < 2.1123.214.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-32279?
How severe is CVE-2023-32279?
How do I fix CVE-2023-32279?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-32273Stack-based buffer overflow vulnerability exists in TELLUS v…7.8
- CVE-2023-32274 Enphase Installer Toolkit versions 3.27.0 has hard code…7.5
- CVE-2023-32275An information disclosure vulnerability exists in the CtEnum…4.4
- CVE-2023-32276Stack-based buffer overflow vulnerability exists in TELLUS v…7.8
- CVE-2023-32277Untrusted Pointer Dereference in I/O subsystem for some Inte…6.1
- CVE-2023-32278Path transversal in some Intel(R) NUC Uniwill Service Driver…7.3
- CVE-2023-3228Business Logic Errors in GitHub repository fossbilling/fossb…5.7
- CVE-2023-32280Insufficiently protected credentials in some Intel(R) Server…5.3
- CVE-2023-32281 The affected application lacks proper validation of…7.8
- CVE-2023-32282Race condition in BIOS firmware for some Intel(R) Processors…7.2
- CVE-2023-32283Insertion of sensitive information into log file in some Int…5.5
- CVE-2023-32284An out-of-bounds write vulnerability exists in the tiff_plan…9.8
Are you affected by CVE-2023-32279?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
