漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Unrestricted upload of file with dangerous type for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with a privileged user combined with a high complexity attack may enable data manipulation. This result may potentially occur via network access when attack requirements are present with special internal knowledge and requires passive user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
N/A
Vulnerability Title
Intel CIP 代码问题漏洞
Vulnerability Description
Intel CIP是美国英特尔(Intel)公司的一个改进计划程序。 Intel CIP WIN_DCA_2.4.0.11001之前版本存在代码问题漏洞,该漏洞源于危险类型文件上传不受限制,可能导致权限提升和数据篡改。
CVSS Information
N/A
Vulnerability Type
N/A