Back to overview

CVE-2023-31273

CRITICAL
10.0
CVSS 3.1
Description
Protection mechanism failure in some Intel DCM software before version 5.2 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

Metadata

CVE ID
CVE-2023-31273
State
PUBLISHED
Assigner
intel
Reserved
2023-05-05 03:00 UTC
Published
2023-11-14 19:04 UTC
Last updated
2024-08-30 15:27 UTC
Primary CWE
CWE-693
Protection mechanism failure
Vendor / Product
n/a / Intel DCM software
Sources
cve.org  ·  NVD

Severity & Metrics

10.0 CRITICAL CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
SSVC — CISA Coordinator
Exploitation
none
Automatable
no
Tech. Impact
total
Affected products (1)
VendorProductPlatformVersions
n/a Intel DCM software before version 5.2
Weakness (CWE)
CWESourceDescription
cna escalation of privilege
CWE-693 cna Protection mechanism failure
CVSS scores (1)
ScoreSeverityVersionSourceVector
10.0 CRITICAL 3.1 cna CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
References (1)
Back to overview