PT-2024-7678 · Intel · Intel Raid Web Console
Aobo Wang
·
Published
2024-09-16
·
Updated
2024-10-09
·
CVE-2024-33848
CVSS v3.1
6.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Intel(R) RAID Web Console software all versions
Description
The issue is related to an uncaught exception in the Intel(R) RAID Web Console software, which may allow an authenticated user to potentially enable denial of service via local access. This is due to an error in handling exceptional states. Exploitation of this issue can lead to a denial of service. The vulnerability is exploitable via local access and poses a serious risk to system stability and data.
Recommendations
For all versions of Intel(R) RAID Web Console software, consider temporarily disabling local access to the software until a patch is available. Restrict access to the Intel(R) RAID Web Console to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intel Raid Web Console