CVE-2022-38099 - Deep Dive into BIOS Input Validation Flaw in Intel(R) NUC 11 (w/ Exploit Details & Code Sample)
> TLDR: A BIOS firmware bug in Intel NUC 11 Compute Elements (before EBTGL357.0065) can let an attacker with local privileges escalate their authority.
CVE-2022-36380 The Intel NUC Kit Wireless Adapter installer has an uncontrolled path, which could be exploited by an attacker to gain privileges.
An attacker may be able to elevate privileges by modifying the Windows registry.
Uncontrolled search path in the installer software for some Intel(r) NUC
CVE-2022-32569 BIOS firmware restrictions may allow a privileged user to enable escalation of privilege via local access.
The issue is resolved in this revision.
Intel(R) vPro Technology and communication issues may potentially occur in some Intel(R) vPro enabled devices. The
CVE-2022-26006 In the BIOS, improper input validation may allow a privileged user to enable escalation of privilege via local access.
This may result in the user being able to gain access to system functions they normally may not have access to. Intel is actively investigating
CVE-2022-41607 V4.5.0 and earlier's API is vulnerable to directory traversal through several methods
ETIC Telecom Remote Access Server (RAS) is a software package used to remotely access servers and desktop computers via the Internet. It is available in
Episode
00:00:00
00:00:00