CVE-2022-41687

Insecure inherited permissions in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1.44 may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:intel:nuc_p14e_laptop_element:*:*:*:*:*:*:*:*
OR cpe:2.3:o:microsoft:windows_10_1507:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1511:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1703:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1709:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1803:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_2004:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_20h2:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_21h1:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_21h2:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_22h2:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:23

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 6.7
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00802.html - Vendor Advisory () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00802.html - Vendor Advisory

Information

Published : 2023-05-10 14:15

Updated : 2024-11-21 07:23


NVD link : CVE-2022-41687

Mitre link : CVE-2022-41687

CVE.ORG link : CVE-2022-41687


JSON object : View

Products Affected

microsoft

  • windows_10_20h2
  • windows_10_1511
  • windows_10_1803
  • windows_10_21h2
  • windows_10_1709
  • windows_10_21h1
  • windows_10_1703
  • windows_10_1607
  • windows_10_1507
  • windows_10_1909
  • windows_10_1809
  • windows_10_2004
  • windows_10_1903
  • windows_10_22h2

intel

  • nuc_p14e_laptop_element
CWE
CWE-277

Insecure Inherited Permissions

CWE-276

Incorrect Default Permissions