| |
Vulnerability CVE-2019-11163
Published: 2019-08-19
Description: |
Insufficient access control in a hardware abstraction driver for Intel(R) Processor Identification Utility for Windows before version 6.1.0731 may allow an authenticated user to potentially enable escalation of privilege, denial of service or information disclosure via local access. |
Type:
CWE-284 (Improper Access Control)
CVSS2 => (AV:L/AC:L/Au:N/C:P/I:P/A:P)
CVSS Base Score |
Impact Subscore |
Exploitability Subscore |
4.6/10 |
6.4/10 |
3.9/10 |
Exploit range |
Attack complexity |
Authentication |
Local |
Low |
No required |
Confidentiality impact |
Integrity impact |
Availability impact |
Partial |
Partial |
Partial |
References: |
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00281.html
|
|
|
closedb();
?>
Copyright 2024, cxsecurity.com
|
|
|