CVE-2022-27500

MEDIUM

Intel Support < 21.7.40 - Authenticated Information Disclosure via Incorrect Default Permissions

Title source: llm
STIX 2.1

Description

Incorrect default permissions for the Intel(R) Support Android application before 21.07.40 may allow an authenticated user to potentially enable information disclosure via local access.

References (1)

Core 1

Scores

CVSS v3 5.5
EPSS 0.0004
EPSS Percentile 11.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-276
Status published
Products (1)
intel/support < 21.7.40
Published Aug 18, 2022
Tracked Since Feb 18, 2026