CVE-2023-25771

MEDIUM

Intel NUC BIOS Firmware - Denial of Service via Improper Access Control

Title source: llm
STIX 2.1

Description

Improper access control for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable denial of service via local access.

References (1)

Core 1

Scores

CVSS v3 5.8
EPSS 0.0004
EPSS Percentile 12.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:N/I:L/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-284
Status published
Products (50)
intel/compute_stick_stk2mv64cc_firmware < ccsklm5v.0067
intel/nuc_7_enthusiast_nuc7i7bnhxg_firmware < bnkbl357.0089
intel/nuc_7_enthusiast_nuc7i7bnkq_firmware < bnkbl357.0089
intel/nuc_7_essential_nuc7cjysal_firmware < ayaplcel.0074
intel/nuc_7_essential_nuc7cjysamn_firmware < ayaplcel.0074
intel/nuc_7_home_nuc7i3bnhxf_firmware < bnkbl357.0089
intel/nuc_7_home_nuc7i5bnhxf_firmware < bnkbl357.0089
intel/nuc_7_home_nuc7i5bnkp_firmware < bnkbl357.0089
intel/nuc_8_business_nuc8i7hnkqc_firmware < hnkbki70.0070
intel/nuc_8_compute_element_cm8ccb4r_firmware < cbwhl357.0101
... and 40 more
Published May 10, 2023
Tracked Since Feb 18, 2026