CVE-2023-33870
CVSS 3.1 Score 6.7 of 10 (medium)
Details
Published Feb 14, 2024
CWE ID 277
Summary
CVE-2023-33870 is a vulnerability affecting some Intel(R) Ethernet tools and driver install software. This issue involves insecure inherited permissions that can enable an authenticated user to potentially elevate their privileges through local access. By exploiting this weakness, an attacker could gain elevated access to the affected system, increasing the risk of data theft or unauthorized system modifications. The vulnerability underscores the importance of secure software development practices and timely updates to mitigate potential risks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share