Lucene search

K
cveIntelCVE-2022-21152
HistoryAug 18, 2022 - 8:15 p.m.

CVE-2022-21152

2022-08-1820:15:09
intel
web.nvd.nist.gov
27
2
cve-2022-21152
intel
edge insights
industrial
software
access control
information disclosure
nvd

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

AI Score

5.2

Confidence

High

EPSS

0

Percentile

12.6%

Improper access control in the Intel® Edge Insights for Industrial software before version 2.6.1 may allow an authenticated user to potentially enable information disclosure via local access.

Affected configurations

Nvd
Vulners
Node
inteledge_insights_for_industrialRange<2.6.1
VendorProductVersionCPE
inteledge_insights_for_industrial*cpe:2.3:a:intel:edge_insights_for_industrial:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Intel(R) Edge Insights for Industrial software",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "before version 2.6.1"
      }
    ]
  }
]

Social References

More

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

AI Score

5.2

Confidence

High

EPSS

0

Percentile

12.6%

Related for CVE-2022-21152