PT-2023-4391 · Intel · Intel(R) Ai Hackathon

Kotko Vladyslav

·

Published

2023-08-08

·

Updated

2023-08-18

·

CVE-2023-28380

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Intel(R) AI Hackathon software versions prior to 2.0.0
Description The issue is related to an uncontrolled search path in the Intel(R) AI Hackathon software, which may allow an unauthenticated user to potentially enable escalation of privilege via network access. This could be exploited by a remote attacker to increase their privileges.
Recommendations For versions prior to 2.0.0, update to version 2.0.0 or later to resolve the issue. As a temporary workaround, consider restricting network access to the software until a patch is applied.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2023-04736
CVE-2023-28380

Affected Products

Intel(R) Ai Hackathon