CVE-2024-28028

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 20

Summary

CVE-2024-28028 is a newly disclosed vulnerability affecting Intel(R) Neural Compressor software. The issue arises from inadequate input validation, which may enable an unauthenticated user to exploit adjacent access and potentially escalate privileges. The vulnerability exists in versions of the software prior to v3.0. This weakness could potentially allow attackers to gain elevated access to affected systems, posing a significant risk to data security and system integrity. Intel urges users to update to the latest version of Intel Neural Compressor software to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share