Lucene search

K
nvd[email protected]NVD:CVE-2021-33130
HistoryMay 12, 2022 - 5:15 p.m.

CVE-2021-33130

2022-05-1217:15:09
CWE-1188
web.nvd.nist.gov
1
cve-2021-33130
information disclosure
unauthenticated user
intel realsense
f450
physical access

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS3

4.6

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

25.9%

Insecure default variable initialization of Intelยฎ RealSenseโ„ข ID Solution F450 before version 2.6.0.74 may allow an unauthenticated user to potentially enable information disclosure via physical access.

Affected configurations

Nvd
Node
intelrealsense_id_f450_firmwareRange<2.6.0.74
AND
intelrealsense_id_f450Match-
VendorProductVersionCPE
intelrealsense_id_f450_firmware*cpe:2.3:o:intel:realsense_id_f450_firmware:*:*:*:*:*:*:*:*
intelrealsense_id_f450-cpe:2.3:h:intel:realsense_id_f450:-:*:*:*:*:*:*:*

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS3

4.6

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS

0.001

Percentile

25.9%

Related for NVD:CVE-2021-33130