CVE-2022-38099
Improper input validation in BIOS firmware for some Intel(R) NUC 11 Compute Elements before version EBTGL357.0065 may allow a privileged user to potentially enable escalation of privilege via local access.
Published:Nov 11, 2022
Last Modified:Feb 5, 2025
EPS:Nov 11, 2022
EPSS Score:0.00039
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Intel
Product
Nuc11dbbi7
Intel
Nuc11dbbi7
Vendor
Intel
Product
Nuc11dbbi7 Firmware
Intel
Nuc11dbbi7 Firmware
Vendor
Intel
Product
Nuc11dbbi9
Intel
Nuc11dbbi9
Vendor
Intel
Product
Nuc11dbbi9 Firmware
Intel
Nuc11dbbi9 Firmware
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebc4w
Intel
Nuc 11 Compute Element Cm11ebc4w
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebc4w Firmware
Intel
Nuc 11 Compute Element Cm11ebc4w Firmware
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebi38w
Intel
Nuc 11 Compute Element Cm11ebi38w
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebi38w Firmware
Intel
Nuc 11 Compute Element Cm11ebi38w Firmware
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebi58w
Intel
Nuc 11 Compute Element Cm11ebi58w
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebi58w Firmware
Intel
Nuc 11 Compute Element Cm11ebi58w Firmware
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebi716w
Intel
Nuc 11 Compute Element Cm11ebi716w
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebi716w Firmware
Intel
Nuc 11 Compute Element Cm11ebi716w Firmware
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebv58w
Intel
Nuc 11 Compute Element Cm11ebv58w
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebv58w Firmware
Intel
Nuc 11 Compute Element Cm11ebv58w Firmware
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebv716w
Intel
Nuc 11 Compute Element Cm11ebv716w
Vendor
Intel
Product
Nuc 11 Compute Element Cm11ebv716w Firmware
Intel
Nuc 11 Compute Element Cm11ebv716w Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
