CVE-2023-32617
moderate-risk
Published 2023-08-11
Improper input validation in some Intel(R) NUC Rugged Kit, Intel(R) NUC Kit and Intel(R) Compute Element BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.
Do I need to act?
-
0.03% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
8
CVSS 8.2/10
High
LOCAL
/ LOW complexity
Affected Products (20)
Nuc Kit Nuc7I7Bnhx1 Firmware
Nuc 7 Home Nuc7I5Bnkp Firmware
Nuc 7 Home Nuc7I3Bnhxf Firmware
Nuc 7 Enthusiast Nuc7I7Bnkq Firmware
Nuc Kit Nuc7I3Bnhx1 Firmware
Nuc 7 Enthusiast Nuc7I7Bnhxg Firmware
Nuc 7 Home Nuc7I5Bnhxf Firmware
Nuc Kit Nuc7I5Bnhx1 Firmware
Nuc Board Nuc7I7Bnb Firmware
Nuc Board Nuc7I5Bnb Firmware
Nuc Board Nuc7I3Bnb Firmware
Nuc Kit Nuc7I5Bnh Firmware
Nuc Kit Nuc7I3Bnk Firmware
Nuc Kit Nuc7I5Bnk Firmware
Nuc Kit Nuc7I7Bnh Firmware
Nuc Kit Nuc7I3Bnh Firmware
Nuc 8 Rugged Kit Nuc8Cchkrn Firmware
Nuc 8 Rugged Board Nuc8Cchbn Firmware
Nuc 8 Rugged Kit Nuc8Cchkr Firmware
Nuc Board Nuc8Cchb Firmware
Affected Vendors
References (2)
46
/ 100
moderate-risk
Severity
25/34 · High
Exploitability
0/34 · Minimal
Exposure
21/34 · High