CVE-2023-28714
11.08.2023, 03:15
Improper access control in firmware for some Intel(R) PROSet/Wireless WiFi software for Windows before version 22.220 HF (Hot Fix) may allow a privileged user to potentially enable escalation of privilege via local access.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| intel | proset\/wireless_wifi | 𝑥 < 22.220.0 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| intel_proset_wireless_wifi_software_for_windows | intel_proset_wireless_wifi_software_for_windows | 𝑥 < 22.220 HF | ADP |
Common Weakness Enumeration
- CWE-284 - Improper Access ControlThe software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
- CWE-863 - Incorrect AuthorizationThe software performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check. This allows attackers to bypass intended access restrictions.