PT-2017-16679 · Intel · Intel Nuc
Publicado
2017-10-11
·
Atualizado
2019-10-03
·
CVE-2017-5700
CVSS v3.1
8.4
Alta
| Vetor | AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Intel NUC versions BN0049 and below
Description
The issue is related to insufficient protection of password storage in system firmware, allowing local attackers to bypass Administrator and User passwords via access to password storage. This could potentially affect a significant number of devices, although the exact number is not specified.
Recommendations
For Intel NUC versions BN0049 and below, update the system firmware to a version above BN0049 to resolve the issue. As a temporary workaround, consider restricting physical access to the devices to minimize the risk of exploitation.
Correção
Insufficiently Protected Credentials
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Intel Nuc