Lucene search

K
cveIntelCVE-2022-22730
HistoryAug 18, 2022 - 8:15 p.m.

CVE-2022-22730

2022-08-1820:15:10
CWE-287
intel
web.nvd.nist.gov
32
5
cve-2022-22730
improper authentication
intel(r) edge insights
industrial software
privilege escalation
network access

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.8

Confidence

High

EPSS

0.002

Percentile

58.3%

Improper authentication in the Intel® Edge Insights for Industrial software before version 2.6.1 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

Affected configurations

Nvd
Vulners
Node
inteledge_insights_for_industrialRange<2.6.1
VendorProductVersionCPE
inteledge_insights_for_industrial*cpe:2.3:a:intel:edge_insights_for_industrial:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Intel(R) Edge Insights for Industrial software",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "before version 2.6.1"
      }
    ]
  }
]

Social References

More

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.8

Confidence

High

EPSS

0.002

Percentile

58.3%

Related for CVE-2022-22730