CVE-2024-26022

EUVD-2024-23316
Improper access control in some Intel(R) UEFI Integrator Tools on Aptio V for Intel(R) NUC may allow an authenticated user to potentially enable escalation of privilege via local access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 35%
Affected Products (NVD)
VendorProductVersion
intelaptio_v_uefi_firmware_integrator_tools
𝑥
< 5.05.04.0008
intelaptio_v_uefi_firmware_integrator_tools
𝑥
< 5.05.04.0008
intelaptio_v_uefi_firmware_integrator_tools
𝑥
< 5.13.00.2106
intelaptio_v_uefi_firmware_integrator_tools
𝑥
< 5.13.00.2109
intelaptio_v_uefi_firmware_integrator_tools
𝑥
< 5.27.06.0019
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
inteluefi_integrator_tools_on_aptio_v_for_intel_nuc_win
𝑥
< 5.05.04.0008
ADP
inteluefi_integrator_tools_on_aptio_v_for_intel_nuc_win
𝑥
< 5.13.00.2109
ADP
inteluefi_integrator_tools_on_aptio_v_for_intel_nuc_win
𝑥
< 5.27.03.0006
ADP
inteluefi_integrator_tools_on_aptio_v_for_intel_nuc_lnx
𝑥
< 5.05.04.0008
ADP
inteluefi_integrator_tools_on_aptio_v_for_intel_nuc_lnx
𝑥
< 5.13.00.2106
ADP
inteluefi_integrator_tools_on_aptio_v_for_intel_nuc_lnx
𝑥
< 5.27.06.0019
ADP