PT-2024-8837 · Intel · Intel Server Board S2600St Family Bios/Firmware Update

Ycdxsb

·

Published

2024-11-12

·

Updated

2024-11-15

·

CVE-2024-34167

CVSS v3.1

6.7

Medium

VectorAV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Intel Server Board S2600ST Family BIOS and Firmware Update software all versions
Description: The issue is related to an uncontrolled search path element in the Intel Server Board S2600ST Family BIOS and Firmware Update software. This could allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations: For all versions of the Intel Server Board S2600ST Family BIOS and Firmware Update software, consider restricting local access to minimize the risk of exploitation until a patch is available. As a temporary workaround, limit privileges for users who have local access to the system. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2024-10473
CVE-2024-34167

Affected Products

Intel Server Board S2600St Family Bios/Firmware Update