CVE-2022-37336

Improper input validation in BIOS firmware for some Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege via local access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.9 HIGH
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H
intelCNA
7.9 HIGH
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 4%
VendorProductVersion
intelnuc_10_performance_kit_nuc10i7fnhn_firmware
-
intelnuc_10_performance_kit_nuc10i5fnkn_firmware
-
intelnuc_10_performance_kit_nuc10i5fnhn_firmware
-
intelnuc_10_performance_kit_nuc10i7fnkn_firmware
-
intelnuc_10_performance_kit_nuc10i3fnhn_firmware
-
intelnuc_10_performance_kit_nuc10i3fnkn_firmware
-
intelnuc_10_performance_mini_pc_nuc10i5fnhja_firmware
-
intelnuc_10_performance_kit_nuc10i3fnhf_firmware
-
intelnuc_10_performance_mini_pc_nuc10i7fnkpa_firmware
-
intelnuc_10_performance_mini_pc_nuc10i5fnhca_firmware
-
intelnuc_10_performance_mini_pc_nuc10i3fnhfa_firmware
-
intelnuc_10_performance_kit_nuc10i5fnhj_firmware
-
intelnuc_10_performance_kit_nuc10i7fnhc_firmware
-
intelnuc_10_performance_mini_pc_nuc10i7fnhja_firmware
-
intelnuc_10_performance_mini_pc_nuc10i3fnhja_firmware
-
intelnuc_10_performance_kit_nuc10i3fnk_firmware
-
intelnuc_10_performance_mini_pc_nuc10i7fnhaa_firmware
-
intelnuc_10_performance_kit_nuc10i5fnh_firmware
-
intelnuc_10_performance_kit_nuc10i5fnk_firmware
-
intelnuc_10_performance_kit_nuc10i7fnh_firmware
-
intelnuc_10_performance_kit_nuc10i5fnhf_firmware
-
intelnuc_10_performance_mini_pc_nuc10i5fnkpa_firmware
-
intelnuc_10_performance_kit_nuc10i3fnh_firmware
-
intelnuc_10_performance_kit_nuc10i7fnk_firmware
-
intelnuc_10_performance_kit_nuc10i7fnkp_firmware
-
intelnuc_10_performance_kit_nuc10i5fnkp_firmware
-
𝑥
= Vulnerable software versions