Vulnerabilities > CVE-2022-29871 - Unspecified vulnerability in Intel Converged Security Management Engine Firmware

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
intel

Summary

Improper access control in the Intel(R) CSME software installer before version 2239.3.7.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

Vulnerable Configurations

Part Description Count
Application
Intel
11
Hardware
Intel
430