HIGH · 7.8

CVE-2021-33089

Improper access control in the software installer for the Intel(R) NUC HDMI Firmware Update Tool for NUC8i3BE, NUC8i5BE, NUC8i7BE before version 1.78.4.0.4 may allow an authenticated user to potential...

Vulnerability Description

Improper access control in the software installer for the Intel(R) NUC HDMI Firmware Update Tool for NUC8i3BE, NUC8i5BE, NUC8i7BE before version 1.78.4.0.4 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS Score

7.8

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
IntelNuc Hdmi Firmware Update Tool< 1.78.4.0.4
IntelNuc Kit Nuc8I3Be-
IntelNuc Kit Nuc8I5Be-
IntelNuc Kit Nuc8I7Be-

References

FAQ

What is CVE-2021-33089?

CVE-2021-33089 is a vulnerability with a CVSS score of 7.8 (HIGH). Improper access control in the software installer for the Intel(R) NUC HDMI Firmware Update Tool for NUC8i3BE, NUC8i5BE, NUC8i7BE before version 1.78.4.0.4 may allow an authenticated user to potential...

How severe is CVE-2021-33089?

CVE-2021-33089 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-33089?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Nuc Hdmi Firmware Update Tool, Intel Nuc Kit Nuc8I3Be, Intel Nuc Kit Nuc8I5Be, Intel Nuc Kit Nuc8I7Be.