Lucene search

K
cveIntelCVE-2022-30692
HistoryFeb 16, 2023 - 9:15 p.m.

CVE-2022-30692

2023-02-1621:15:12
CWE-754
intel
web.nvd.nist.gov
22
cve-2022-30692
intel
sur
denial of service
network access
vulnerability

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.4

Confidence

High

EPSS

0.001

Percentile

40.5%

Improper conditions check in the Intel® SUR software before version 2.4.8902 may allow an unauthenticated user to potentially enable denial of service via network access.

Affected configurations

Nvd
Vulners
Node
intelsystem_usage_reportRange<2.4.8902
VendorProductVersionCPE
intelsystem_usage_report*cpe:2.3:a:intel:system_usage_report:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Intel(R) SUR software",
    "versions": [
      {
        "version": "before version 2.4.8902",
        "status": "affected"
      }
    ],
    "defaultStatus": "unaffected"
  }
]

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.4

Confidence

High

EPSS

0.001

Percentile

40.5%

Related for CVE-2022-30692