CVE-2023-28737
14.11.2023, 19:15
Improper initialization in some Intel(R) Aptio* V UEFI Firmware Integrator Tools may allow an authenticated user to potentially enable escalation of privilege via local access.Enginsight
Vendor | Product | Version |
---|---|---|
intel | aptio_v_uefi_firmware_integrator_tools | 5.27.03.0003 |
intel | aptio_v_uefi_firmware_integrator_tools | 5.27.06.0017 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-665 - Improper InitializationThe software does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.
- CWE-269 - Improper Privilege ManagementThe software does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.