

Rewertz Threat Advisory – Multiple Intel Processors Vulnerabilities
November 16, 2023
Rewertz Threat Advisory – Multiple Cisco Secure Client Vulnerabilities
November 16, 2023
Rewertz Threat Advisory – Multiple Intel Processors Vulnerabilities
November 16, 2023
Rewertz Threat Advisory – Multiple Cisco Secure Client Vulnerabilities
November 16, 2023Severity
Medium
Analysis Summary
CVE-2023-34997 CVSS: 6.7
Intel Server Configuration Utility software could allow a local authenticated attacker to gain elevated privileges on the system, caused by insecure inherited permissions in the installer. An attacker could exploit this vulnerability to escalate privileges.
CVE-2023-25075 CVSS: 6.7
Intel Server Configuration Utility software could allow a local authenticated attacker to gain elevated privileges on the system, caused by unquoted search path in the installer. An attacker could exploit this vulnerability to escalate privileges.
Impact
- Privilege Escalation
Indicators Of Compromise
CVE
- CVE-2023-34997
- CVE-2023-25075
Affected Vendors
Intel
Affected Products
- Intel Server Configuration Utility software 16.0.8
Remediation
Refer to INTEL Security Advisory for patch, upgrade or suggested workaround information.