CVE Vulnerabilities

CVE-2023-28722

DEPRECATED: Improper Sanitization of Custom Special Characters

Published: Jan 19, 2024 | Modified: Nov 21, 2024
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper buffer restrictions for some Intel NUC BIOS firmware before version IN0048 may allow a privileged user to potentially enable escalation of privilege via local access.

Weakness

This entry has been deprecated. It originally came from PLOVER, which sometimes defined “other” and “miscellaneous” categories in order to satisfy exhaustiveness requirements for taxonomies. Within the context of CWE, the use of a more abstract entry is preferred in mapping situations. CWE-75 is a more appropriate mapping.

Affected Software

Name Vendor Start Version End Version
Nuc_8_mainstream-g_kit_nuc8i5inh_firmware Intel inwhl357.0049 (including) inwhl357.0049 (including)

References