CVE-2024-28127
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2024-28127 is a vulnerability affecting certain Intel(R) Processors, where the UEFI firmware fails to adequately validate user input. This issue could potentially allow a privileged user to escalate their privileges through local access, posing a significant security risk. By bypassing input validation checks, an attacker may gain unauthorized system control and potentially disrupt or gain unauthorized access to sensitive data. Intel is actively working on addressing this vulnerability through firmware updates. It is recommended that users apply these updates as soon as they become available to minimize the risk of exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.