HIGH · 8.4

CVE-2017-5700

Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator ...

Vulnerability Description

Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator and User passwords via access to password storage.

CVSS Score

8.4

HIGH

CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
IntelNuc7I7Bnh Firmwareayaplcel.86a.0041
IntelNuc7I7Bnh-
IntelNuc7I5Bnh Firmwareayaplcel.86a.0041
IntelNuc7I5Bnh-
IntelNuc7I5Bnk Firmwareayaplcel.86a.0041
IntelNuc7I5Bnk-
IntelNuc7I3Bnh Firmwareayaplcel.86a.0041
IntelNuc7I3Bnh-
IntelNuc7I3Bnk Firmwareayaplcel.86a.0041
IntelNuc7I3Bnk-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2017-5700?

CVE-2017-5700 is a vulnerability with a CVSS score of 8.4 (HIGH). Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator ...

How severe is CVE-2017-5700?

CVE-2017-5700 has been rated HIGH with a CVSS base score of 8.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2017-5700?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Nuc7I7Bnh Firmware, Intel Nuc7I7Bnh, Intel Nuc7I5Bnh Firmware, Intel Nuc7I5Bnh, Intel Nuc7I5Bnk Firmware.