CVE-2023-23583

HIGH

Intel Core i3/i5/i7 10th Gen Firmware - Unauthenticated Privilege Escalation and Information Disclosure via Local Access

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2023-23583. PoCs published by Mav3r1ck0x1.

AI-analyzed exploit summary This repository contains a Python script that checks the CPU ID and BIOS version to determine if a system is affected by CVE-2023-23583 (Reptar). It does not exploit the vulnerability but scans for potentially vulnerable systems.

Description

Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.

Exploits (1)

nomisec SCANNER
by Mav3r1ck0x1 · poc
https://github.com/Mav3r1ck0x1/CVE-2023-23583-Reptar-

This repository contains a Python script that checks the CPU ID and BIOS version to determine if a system is affected by CVE-2023-23583 (Reptar). It does not exploit the vulnerability but scans for potentially vulnerable systems.

Classification
Scanner 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Intel CPUs (specific models)
No auth needed
Prerequisites: Access to execute commands on the target system
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Scores

CVSS v3 8.8
EPSS 0.0173
EPSS Percentile 74.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-1281 CWE-276
Status published
Products (50)
debian/debian_linux 11.0
debian/debian_linux 12.0
intel/core_i3-1005g1_firmware
intel/core_i3-10100y_firmware
intel/core_i3-10110u_firmware
intel/core_i3-10110y_firmware
intel/core_i3-11100he_firmware
intel/core_i3-1110g4_firmware
intel/core_i3-1115g4_firmware
intel/core_i3-1115g4e_firmware
... and 40 more
Published Nov 14, 2023
Tracked Since Feb 18, 2026