CVE-2022-21225
HIGHIntel(R) Data Center Manager <4.1 - Privilege Escalation
Title source: llmDescription
Improper neutralization in the Intel(R) Data Center Manager software before version 4.1 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
References (3)
Core 3
Core References
Exploit, Mailing List, Third Party Advisory mailing-list
http://seclists.org/fulldisclosure/2022/Dec/1
Exploit, Third Party Advisory, VDB Entry
http://packetstormsecurity.com/files/170180/Intel-Data-Center-Manager-4.1-SQL-Injection.html
Scores
CVSS v3
8.0
EPSS
0.0147
EPSS Percentile
81.1%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
total
Details
Status
published
Products (1)
intel/data_center_manager
< 4.1
Published
Aug 18, 2022
Tracked Since
Feb 18, 2026