CVE-2022-36372

Improper buffer restrictions in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
LOCAL
HIGH
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
intelCNA
7.5 HIGH
LOCAL
HIGH
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 12%
VendorProductVersion
intelnuc_8_compute_element_cm8i3cb4n_firmware
-
intelnuc_8_compute_element_cm8i5cb8n_firmware
-
intelnuc_8_compute_element_cm8i7cb8n_firmware
-
intelnuc_8_compute_element_cm8ccb4r_firmware
-
intelnuc_8_compute_element_cm8pcb4r_firmware
-
intelnuc_pro_kit_nuc8i3pnb_firmware
-
intelnuc_pro_kit_nuc8i3pnh_firmware
-
intelnuc_pro_kit_nuc8i3pnk_firmware
-
intelnuc_pro_board_nuc8i3pnb_firmware
-
intelnuc_pro_board_nuc8i3pnh_firmware
-
intelnuc_pro_board_nuc8i3pnk_firmware
-
intelnuc_rugged_kit_nuc8cchb_firmware
-
intelnuc_rugged_kit_nuc8cchbn_firmware
-
intelnuc_rugged_kit_nuc8cchkrn_firmware
-
intelnuc_rugged_kit_nuc8cchkr_firmware
-
intelnuc_pro_compute_element_nuc9v7qnb_firmware
-
intelnuc_pro_compute_element_nuc9v7qnx_firmware
-
intelnuc_pro_compute_element_nuc9vxqnb_firmware
-
intelnuc_pro_compute_element_nuc9vxqnx_firmware
-
intelnuc_business_nuc8i7hnkqc_firmware
-
intelnuc_business_nuc8i7hvkva_firmware
-
intelnuc_business_nuc8i7hvkvaw_firmware
-
intelnuc_business_nuc8i7hvk_firmware
-
intelnuc_business_nuc8i7hnk_firmware
-
intelnuc_enthusiast_nuc8i7hnkqc_firmware
-
intelnuc_enthusiast_nuc8i7hvkva_firmware
-
intelnuc_enthusiast_nuc8i7hvkvaw_firmware
-
intelnuc_enthusiast_nuc8i7hvk_firmware
-
intelnuc_enthusiast_nuc8i7hnk_firmware
-
intelnuc_kit_nuc8i7hnkqc_firmware
-
intelnuc_kit_nuc8i7hvkva_firmware
-
intelnuc_kit_nuc8i7hvkvaw_firmware
-
intelnuc_kit_nuc8i7hvk_firmware
-
intelnuc_kit_nuc8i7hnk_firmware
-
𝑥
= Vulnerable software versions