PT-2017-16679 · Intel · Intel Nuc

Published

2017-10-11

·

Updated

2019-10-03

·

CVE-2017-5700

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel NUC versions BN0049 and below
Description The issue is related to insufficient protection of password storage in system firmware, allowing local attackers to bypass Administrator and User passwords via access to password storage. This could potentially affect a significant number of devices, although the exact number is not specified.
Recommendations For Intel NUC versions BN0049 and below, update the system firmware to a version above BN0049 to resolve the issue. As a temporary workaround, consider restricting physical access to the devices to minimize the risk of exploitation.

Fix

Insufficiently Protected Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-5700

Affected Products

Intel Nuc