PT-2025-21070 · Intel · Intel Ethernet Connection

Published

2025-05-13

·

Updated

2025-05-14

·

CVE-2025-20015

CVSS v3.1

6.7

Medium

VectorAV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Intel(R) Ethernet Connection software versions prior to 29.4
Description: The issue is related to an uncontrolled search path element in some Intel(R) Ethernet Connection software. This may allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations: For versions prior to 29.4, update to version 29.4 or later to resolve the issue.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2025-09950
CVE-2025-20015

Affected Products

Intel Ethernet Connection