CVE-2023-34430

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Nov 14, 2023
Updated: Nov 21, 2023
CWE ID 427

Summary

CVE-2023-34430 is a vulnerability affecting Intel Battery Life Diagnostic Tool software versions prior to 2.2.1. This issue involves an uncontrolled search path that can be exploited by authenticated users, potentially enabling privilege escalation through local access. The flaw does not require any special permissions or knowledge beyond regular user access, increasing the risk of exploitation. Intel urges users to update their software to the latest version to mitigate this vulnerability. Successful exploitation could result in significant system compromise.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share