CVE-2023-33878

Path transversal in some Intel(R) NUC P14E Laptop Element Audio Install Package software before version 156 for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:intel:audio_install_package:*:*:*:*:*:windows:*:*
cpe:2.3:h:intel:nuc_p14e_laptop_element_cmcn1cc:-:*:*:*:*:*:*:*

History

20 Nov 2023, 20:57

Type Values Removed Values Added
CWE CWE-22
First Time Intel audio Install Package
Intel nuc P14e Laptop Element Cmcn1cc
Intel
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
CPE cpe:2.3:h:intel:nuc_p14e_laptop_element_cmcn1cc:-:*:*:*:*:*:*:*
cpe:2.3:a:intel:audio_install_package:*:*:*:*:*:windows:*:*
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00908.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00908.html - Patch, Vendor Advisory

14 Nov 2023, 19:30

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-14 19:15

Updated : 2024-02-28 20:54


NVD link : CVE-2023-33878

Mitre link : CVE-2023-33878

CVE.ORG link : CVE-2023-33878


JSON object : View

Products Affected

intel

  • audio_install_package
  • nuc_p14e_laptop_element_cmcn1cc
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

CWE-249

DEPRECATED: Often Misused: Path Manipulation