CVE-2022-27229

Path transversal in some Intel(R) NUC Kits NUC7i3DN, NUC7i5DN, NUC7i7DN HDMI firmware update tool software before version 1.79.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.7 MEDIUM
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
intelhdmi_firmware
𝑥
< 1.79.1.1
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
intelnuc_hdmi_firmware_update_tool
𝑥
< 1.79.1.1
ADP
intelnuc_kit_nuc7i3dnhe
𝑥
< *
ADP
intelnuc_kit_nuc7i3dnke
𝑥
< *
ADP
intelnuc_kit_nuc7i5dnhe
𝑥
< *
ADP
intelnuc_kit_nuc7i5dnke
𝑥
< *
ADP
intelnuc_kit_nuc7i7dnhe
𝑥
< *
ADP
intelnuc_kit_nuc7i7dnke
𝑥
< *
ADP