CVE-2020-12320

HIGH

Intel Scs Add-on For Microsoft Sccm - Uncontrolled Search Path

Title source: rule

Description

Uncontrolled search path in Intel(R) SCS Add-on for Microsoft* SCCM before version 2.1.10 may allow an authenticated user to potentially enable escalation of privilege via local access.

Scores

CVSS v3 7.8
EPSS 0.0007
EPSS Percentile 20.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status published

Affected Products (1)

intel/scs_add-on_for_microsoft_sccm

Timeline

Published Nov 12, 2020
Tracked Since Feb 18, 2026