CVE-2021-0071

HIGH

Intel WiFi Firmware < 22.40 - Unauthenticated Privilege Escalation via UEFI Input Validation

Title source: llm
STIX 2.1

Description

Improper input validation in firmware for some Intel(R) PROSet/Wireless WiFi in UEFI may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

References (1)

Core 1

Scores

CVSS v3 8.8
EPSS 0.0022
EPSS Percentile 44.5%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-20
Status published
Products (13)
intel/7265_firmware < 22.40
intel/9260_firmware
intel/ac_3165_firmware < 22.40
intel/ac_3168_firmware < 22.40
intel/ac_8260_firmware < 22.40
intel/ac_8265_firmware < 22.40
intel/ac_9260_firmware < 22.40
intel/ac_9461_firmware < 22.40
intel/ac_9462_firmware < 22.40
intel/ac_9560_firmware < 22.40
... and 3 more
Published Nov 17, 2021
Tracked Since Feb 18, 2026