PT-2024-7678 · Intel · Intel Raid Web Console

Aobo Wang

·

Published

2024-09-16

·

Updated

2024-10-09

·

CVE-2024-33848

CVSS v3.1

6.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) RAID Web Console software all versions
Description The issue is related to an uncaught exception in the Intel(R) RAID Web Console software, which may allow an authenticated user to potentially enable denial of service via local access. This is due to an error in handling exceptional states. Exploitation of this issue can lead to a denial of service. The vulnerability is exploitable via local access and poses a serious risk to system stability and data.
Recommendations For all versions of Intel(R) RAID Web Console software, consider temporarily disabling local access to the software until a patch is available. Restrict access to the Intel(R) RAID Web Console to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2024-09124
CVE-2024-33848

Affected Products

Intel Raid Web Console