Lucene search

K
nvd[email protected]NVD:CVE-2024-28170
HistorySep 16, 2024 - 5:16 p.m.

CVE-2024-28170

2024-09-1617:16:05
CWE-284
web.nvd.nist.gov
3
intel raid web console
information disclosure
access control

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS

0

Percentile

9.6%

Improper access control in Intel® RAID Web Console all versions may allow an authenticated user to potentially enable information disclosure via local access.

Affected configurations

Nvd
Node
intelraid_web_console
VendorProductVersionCPE
intelraid_web_console*cpe:2.3:a:intel:raid_web_console:*:*:*:*:*:*:*:*

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS

0

Percentile

9.6%

Related for NVD:CVE-2024-28170