CVE-2023-28389

Incorrect default permissions in some Intel(R) CSME installer software before version 2328.5.5.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

No configuration.

History

21 Nov 2024, 07:54

Type Values Removed Values Added
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00923.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00923.html -
Summary
  • (es) Los permisos predeterminados incorrectos en algunos programas de instalación de Intel(R) CSME anteriores a la versión 2328.5.5.0 pueden permitir que un usuario autenticado habilite potencialmente la escalada de privilegios a través del acceso local.

14 Mar 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-14 17:15

Updated : 2024-11-21 07:54


NVD link : CVE-2023-28389

Mitre link : CVE-2023-28389

CVE.ORG link : CVE-2023-28389


JSON object : View

Products Affected

No product.

CWE
CWE-276

Incorrect Default Permissions