Lucene search

K
cveIntelCVE-2017-5685
HistoryApr 03, 2017 - 9:59 p.m.

CVE-2017-5685

2017-04-0321:59:00
CWE-276
intel
web.nvd.nist.gov
22
bios
intel nuc
6th gen
intel core
security vulnerability
cve-2017-5685
nvd

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS3

3.9

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

AI Score

4.3

Confidence

High

EPSS

0

Percentile

12.6%

The BIOS in Intel NUC systems based on 6th Gen Intel Core processors prior to version KY0045 may allow may allow an attacker with physical access to the system to gain access to personal information.

Affected configurations

Nvd
Node
intelnuc6i7kyk_biosMatchkyskli70.86a.0042.2016.0929.1933
AND
intelnuc6i7kykMatch-
VendorProductVersionCPE
intelnuc6i7kyk_bioskyskli70.86a.0042.2016.0929.1933cpe:2.3:o:intel:nuc6i7kyk_bios:kyskli70.86a.0042.2016.0929.1933:*:*:*:*:*:*:*
intelnuc6i7kyk-cpe:2.3:h:intel:nuc6i7kyk:-:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Intel NUC NUC6i7KYK",
    "vendor": "Intel",
    "versions": [
      {
        "status": "affected",
        "version": "Before KY0045"
      }
    ]
  }
]

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS3

3.9

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

AI Score

4.3

Confidence

High

EPSS

0

Percentile

12.6%

Related for CVE-2017-5685