CVE-2023-32617

moderate-risk
Published 2023-08-11

Improper input validation in some Intel(R) NUC Rugged Kit, Intel(R) NUC Kit and Intel(R) Compute Element BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

Do I need to act?

-
0.03% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
8
CVSS 8.2/10 High
LOCAL / LOW complexity

Affected Products (20)

Nuc Kit Nuc7I7Bnhx1 Firmware
Nuc 7 Home Nuc7I5Bnkp Firmware
Nuc 7 Home Nuc7I3Bnhxf Firmware
Nuc 7 Enthusiast Nuc7I7Bnkq Firmware
Nuc Kit Nuc7I3Bnhx1 Firmware
Nuc 7 Enthusiast Nuc7I7Bnhxg Firmware
Nuc 7 Home Nuc7I5Bnhxf Firmware
Nuc Kit Nuc7I5Bnhx1 Firmware
Nuc Board Nuc7I7Bnb Firmware
Nuc Board Nuc7I5Bnb Firmware
Nuc Board Nuc7I3Bnb Firmware
Nuc Kit Nuc7I5Bnh Firmware
Nuc Kit Nuc7I3Bnk Firmware
Nuc Kit Nuc7I5Bnk Firmware
Nuc Kit Nuc7I7Bnh Firmware
Nuc Kit Nuc7I3Bnh Firmware
Nuc 8 Rugged Kit Nuc8Cchkrn Firmware
Nuc 8 Rugged Board Nuc8Cchbn Firmware
Nuc 8 Rugged Kit Nuc8Cchkr Firmware
Nuc Board Nuc8Cchb Firmware

Affected Vendors

46
/ 100
moderate-risk
Severity 25/34 · High
Exploitability 0/34 · Minimal
Exposure 21/34 · High