Lucene search

K
nvd[email protected]NVD:CVE-2017-5700
HistoryOct 11, 2017 - 12:29 a.m.

CVE-2017-5700

2017-10-1100:29:00
CWE-522
web.nvd.nist.gov
1

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

8.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

8.3

Confidence

High

EPSS

0.001

Percentile

31.7%

Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator and User passwords via access to password storage.

Affected configurations

Nvd
Node
intelnuc7i7bnh_firmwareMatchayaplcel.86a.0041
OR
intelnuc7i7bnh_firmwareMatchbnkbl357.86a.0052
OR
intelnuc7i7bnh_firmwareMatchccsklm5v.86a.0052
OR
intelnuc7i7bnh_firmwareMatchccsklm30.86a.0052
OR
intelnuc7i7bnh_firmwareMatchdnkbli5v.86a.0026
OR
intelnuc7i7bnh_firmwareMatchdnkbli30.86a.0026
OR
intelnuc7i7bnh_firmwareMatchkyskli70.86a.0050
OR
intelnuc7i7bnh_firmwareMatchrybdwi35.86a.0366
OR
intelnuc7i7bnh_firmwareMatchsyskli35.86a.0062
OR
intelnuc7i7bnh_firmwareMatchtybyt20h.86a.0015
AND
intelnuc7i7bnhMatch-
Node
intelnuc7i5bnh_firmwareMatchayaplcel.86a.0041
OR
intelnuc7i5bnh_firmwareMatchbnkbl357.86a.0052
OR
intelnuc7i5bnh_firmwareMatchccsklm5v.86a.0052
OR
intelnuc7i5bnh_firmwareMatchccsklm30.86a.0052
OR
intelnuc7i5bnh_firmwareMatchdnkbli5v.86a.0026
OR
intelnuc7i5bnh_firmwareMatchdnkbli30.86a.0026
OR
intelnuc7i5bnh_firmwareMatchkyskli70.86a.0050
OR
intelnuc7i5bnh_firmwareMatchrybdwi35.86a.0366
OR
intelnuc7i5bnh_firmwareMatchsyskli35.86a.0062
OR
intelnuc7i5bnh_firmwareMatchtybyt20h.86a.0015
AND
intelnuc7i5bnhMatch-
Node
intelnuc7i5bnk_firmwareMatchayaplcel.86a.0041
OR
intelnuc7i5bnk_firmwareMatchbnkbl357.86a.0052
OR
intelnuc7i5bnk_firmwareMatchccsklm5v.86a.0052
OR
intelnuc7i5bnk_firmwareMatchccsklm30.86a.0052
OR
intelnuc7i5bnk_firmwareMatchdnkbli5v.86a.0026
OR
intelnuc7i5bnk_firmwareMatchdnkbli30.86a.0026
OR
intelnuc7i5bnk_firmwareMatchkyskli70.86a.0050
OR
intelnuc7i5bnk_firmwareMatchrybdwi35.86a.0366
OR
intelnuc7i5bnk_firmwareMatchsyskli35.86a.0062
OR
intelnuc7i5bnk_firmwareMatchtybyt20h.86a.0015
AND
intelnuc7i5bnkMatch-
Node
intelnuc7i3bnh_firmwareMatchayaplcel.86a.0041
OR
intelnuc7i3bnh_firmwareMatchbnkbl357.86a.0052
OR
intelnuc7i3bnh_firmwareMatchccsklm5v.86a.0052
OR
intelnuc7i3bnh_firmwareMatchccsklm30.86a.0052
OR
intelnuc7i3bnh_firmwareMatchdnkbli5v.86a.0026
OR
intelnuc7i3bnh_firmwareMatchdnkbli30.86a.0026
OR
intelnuc7i3bnh_firmwareMatchkyskli70.86a.0050
OR
intelnuc7i3bnh_firmwareMatchrybdwi35.86a.0366
OR
intelnuc7i3bnh_firmwareMatchsyskli35.86a.0062
OR
intelnuc7i3bnh_firmwareMatchtybyt20h.86a.0015
AND
intelnuc7i3bnhMatch-
Node
intelnuc7i3bnk_firmwareMatchayaplcel.86a.0041
OR
intelnuc7i3bnk_firmwareMatchbnkbl357.86a.0052
OR
intelnuc7i3bnk_firmwareMatchccsklm5v.86a.0052
OR
intelnuc7i3bnk_firmwareMatchccsklm30.86a.0052
OR
intelnuc7i3bnk_firmwareMatchdnkbli5v.86a.0026
OR
intelnuc7i3bnk_firmwareMatchdnkbli30.86a.0026
OR
intelnuc7i3bnk_firmwareMatchkyskli70.86a.0050
OR
intelnuc7i3bnk_firmwareMatchrybdwi35.86a.0366
OR
intelnuc7i3bnk_firmwareMatchsyskli35.86a.0062
OR
intelnuc7i3bnk_firmwareMatchtybyt20h.86a.0015
AND
intelnuc7i3bnkMatch-
VendorProductVersionCPE
intelnuc7i7bnh_firmwareayaplcel.86a.0041cpe:2.3:o:intel:nuc7i7bnh_firmware:ayaplcel.86a.0041:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwarebnkbl357.86a.0052cpe:2.3:o:intel:nuc7i7bnh_firmware:bnkbl357.86a.0052:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwareccsklm5v.86a.0052cpe:2.3:o:intel:nuc7i7bnh_firmware:ccsklm5v.86a.0052:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwareccsklm30.86a.0052cpe:2.3:o:intel:nuc7i7bnh_firmware:ccsklm30.86a.0052:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwarednkbli5v.86a.0026cpe:2.3:o:intel:nuc7i7bnh_firmware:dnkbli5v.86a.0026:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwarednkbli30.86a.0026cpe:2.3:o:intel:nuc7i7bnh_firmware:dnkbli30.86a.0026:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwarekyskli70.86a.0050cpe:2.3:o:intel:nuc7i7bnh_firmware:kyskli70.86a.0050:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwarerybdwi35.86a.0366cpe:2.3:o:intel:nuc7i7bnh_firmware:rybdwi35.86a.0366:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwaresyskli35.86a.0062cpe:2.3:o:intel:nuc7i7bnh_firmware:syskli35.86a.0062:*:*:*:*:*:*:*
intelnuc7i7bnh_firmwaretybyt20h.86a.0015cpe:2.3:o:intel:nuc7i7bnh_firmware:tybyt20h.86a.0015:*:*:*:*:*:*:*
Rows per page:
1-10 of 551

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

8.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

8.3

Confidence

High

EPSS

0.001

Percentile

31.7%

Related for NVD:CVE-2017-5700