PT-2020-5635 · Intel · Intel Proset/Wireless Wifi

Published

2020-04-14

·

Updated

2021-07-21

·

CVE-2020-0557

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel PROSet/Wireless WiFi versions prior to 21.70
Description The issue is related to insecure inherited permissions in Intel PROSet/Wireless WiFi products, which may allow an authenticated user to potentially enable escalation of privilege via local access. This is due to errors in privilege management.
Recommendations For versions prior to 21.70, update to version 21.70 or later to resolve the issue. As a temporary workaround, consider restricting local access to minimize the risk of exploitation.

Fix

Improper Privilege Management

Incorrect Permission

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-01335
CVE-2020-0557
ZDI-20-496

Affected Products

Intel Proset/Wireless Wifi