CVE Published: 14/02/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: intel |
Vendor: n/a |
Product: Intel(R) Thunderbolt(TM) DCH drivers for Windows Status : PUBLISHED
CVE-2023-22342 Description
Improper input validation in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable escalation of privilege via local access.
Metrics
CVSS Version: 3.1 |
Base Score: 7.7 HIGH Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:L
l➤ Exploitability Metrics: Attack Vector (AV)* LOCAL Attack Complexity (AC)* HIGH Privileges Required (PR)* LOW User Interaction (UI)* NONE Scope (S)* CHANGED
l➤ Impact Metrics: Confidentiality Impact (C)* HIGH Integrity Impact (I)* HIGH Availability Impact (A)* LOW
Weakness Enumeration (CWE)
CWE-ID: CWE Name: escalation of privilege Source: n/a
Common Attack Pattern Enumeration and Classification (CAPEC)