CVE-2023-33878

Path transversal in some Intel(R) NUC P14E Laptop Element Audio Install Package software before version 156 for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:intel:audio_install_package:*:*:*:*:*:windows:*:*
cpe:2.3:h:intel:nuc_p14e_laptop_element_cmcn1cc:-:*:*:*:*:*:*:*

History

20 Nov 2023, 20:57

Type Values Removed Values Added
CWE CWE-22
CPE cpe:2.3:a:intel:audio_install_package:*:*:*:*:*:windows:*:*
cpe:2.3:h:intel:nuc_p14e_laptop_element_cmcn1cc:-:*:*:*:*:*:*:*
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00908.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00908.html - Patch, Vendor Advisory
First Time Intel nuc P14e Laptop Element Cmcn1cc
Intel audio Install Package
Intel
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

14 Nov 2023, 19:30

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-14 19:15

Updated : 2023-12-10 15:26


NVD link : CVE-2023-33878

Mitre link : CVE-2023-33878

CVE.ORG link : CVE-2023-33878


JSON object : View

Products Affected

intel

  • nuc_p14e_laptop_element_cmcn1cc
  • audio_install_package
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

CWE-249

DEPRECATED: Often Misused: Path Manipulation