CVE-2020-0547

HIGH

Intel Data Migration Software <= 3.3 - Authenticated Privilege Escalation via Installer Default Permissions

Title source: llm
STIX 2.1

Description

Incorrect default permissions in the installer for Intel(R) Data Migration Software versions 3.3 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0009
EPSS Percentile 25.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-276
Status published
Products (1)
intel/data_migration < 3.3
Published Apr 15, 2020
Tracked Since Feb 18, 2026