Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-25771


Improper access control for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable denial of service via local access.


Security Impact Summary

This vulnerability carries a MEDIUM severity rating with a CVSS v3.1 score of 5.8, requiring local system access to exploit but requires specific conditions to be met though user interaction is required . The vulnerability impacts limited integrity, and availability (service disruption) for affected systems. Impacting 118 products from intel, from intel, from intel and 115 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

Reported in 2023, this vulnerability emerged during an era marked by increased sophistication in supply chain attacks, cloud infrastructure vulnerabilities, and software-as-a-service (SaaS) security challenges. Security practices during this period emphasized zero-trust architectures, container security, and API protection.


Published

2023-05-10T14:15:32.310

Last Modified

2024-11-21T07:50:10.200

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.8 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-284
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System intel nuc_8_compute_element_cm8i3cb4n_firmware < cbwhl357.0101 Yes
Hardware intel nuc_8_compute_element_cm8i3cb4n - No
Operating System intel nuc_8_compute_element_cm8i5cb8n_firmware < cbwhl357.0101 Yes
Hardware intel nuc_8_compute_element_cm8i5cb8n - No
Operating System intel nuc_8_compute_element_cm8i7cb8n_firmware < cbwhl357.0101 Yes
Hardware intel nuc_8_compute_element_cm8i7cb8n - No
Operating System intel nuc_8_compute_element_cm8ccb4r_firmware < cbwhl357.0101 Yes
Hardware intel nuc_8_compute_element_cm8ccb4r - No
Operating System intel nuc_8_compute_element_cm8pcb4r_firmware < cbwhl357.0101 Yes
Hardware intel nuc_8_compute_element_cm8pcb4r - No
Operating System intel nuc_8_pro_kit_nuc8i3pnk_firmware < pnwhl357.0050 Yes
Hardware intel nuc_8_pro_kit_nuc8i3pnk - No
Operating System intel nuc_8_pro_board_nuc8i3pnb_firmware < pnwhl357.0050 Yes
Hardware intel nuc_8_pro_board_nuc8i3pnb - No
Operating System intel nuc_8_pro_kit_nuc8i3pnh_firmware < pnwhl357.0050 Yes
Hardware intel nuc_8_pro_kit_nuc8i3pnh - No
Operating System intel nuc_9_pro_compute_element_nuc9v7qnb_firmware < qncflx70.0071 Yes
Hardware intel nuc_9_pro_compute_element_nuc9v7qnb - No
Operating System intel nuc_9_pro_compute_element_nuc9v7qnx_firmware < qncflx70.0071 Yes
Hardware intel nuc_9_pro_compute_element_nuc9v7qnx - No
Operating System intel nuc_9_pro_compute_element_nuc9vxqnb_firmware < qncflx70.0071 Yes
Hardware intel nuc_9_pro_compute_element_nuc9vxqnb - No
Operating System intel nuc_9_pro_compute_element_nuc9vxqnx_firmware < qncflx70.0071 Yes
Hardware intel nuc_9_pro_compute_element_nuc9vxqnx - No
Operating System intel nuc_8_home_nuc8i5behfa_firmware < becfl357.0092 Yes
Hardware intel nuc_8_home_nuc8i5behfa - No
Operating System intel nuc_8_home_nuc8i3behfa_firmware < becfl357.0092 Yes
Hardware intel nuc_8_home_nuc8i3behfa - No
Operating System intel nuc_8_enthusiast_nuc8i7behga_firmware < becfl357.0092 Yes
Hardware intel nuc_8_enthusiast_nuc8i7behga - No
Operating System intel nuc_8_home_nuc8i5bekpa_firmware < becfl357.0092 Yes
Hardware intel nuc_8_home_nuc8i5bekpa - No
Operating System intel nuc_8_enthusiast_nuc8i7bekqa_firmware < becfl357.0092 Yes
Hardware intel nuc_8_enthusiast_nuc8i7bekqa - No
Operating System intel nuc_kit_nuc8i7beh_firmware < becfl357.0092 Yes
Hardware intel nuc_kit_nuc8i7beh - No
Operating System intel nuc_kit_nuc8i5bek_firmware < becfl357.0092 Yes
Hardware intel nuc_kit_nuc8i5bek - No
Operating System intel nuc_kit_nuc8i5beh_firmware < becfl357.0092 Yes
Hardware intel nuc_kit_nuc8i5beh - No
Operating System intel nuc_kit_nuc8i3bek_firmware < becfl357.0092 Yes
Hardware intel nuc_kit_nuc8i3bek - No
Operating System intel nuc_kit_nuc8i3beh_firmware < becfl357.0092 Yes
Hardware intel nuc_kit_nuc8i3beh - No
Operating System intel nuc_kit_nuc8i7bek_firmware < becfl357.0092 Yes
Hardware intel nuc_kit_nuc8i7bek - No
Operating System intel nuc_kit_nuc8i5behs_firmware < becfl357.0092 Yes
Hardware intel nuc_kit_nuc8i5behs - No
Operating System intel nuc_kit_nuc8i3behs_firmware < becfl357.0092 Yes
Hardware intel nuc_kit_nuc8i3behs - No
Operating System intel nuc_8_business_nuc8i7hnkqc_firmware < hnkbki70.0070 Yes
Hardware intel nuc_8_business_nuc8i7hnkqc - No
Operating System intel nuc_8_enthusiast_nuc8i7hvkva_firmware < hnkbki70.0070 Yes
Hardware intel nuc_8_enthusiast_nuc8i7hvkva - No
Operating System intel nuc_8_enthusiast_nuc8i7hvkvaw_firmware < hnkbki70.0070 Yes
Hardware intel nuc_8_enthusiast_nuc8i7hvkvaw - No
Operating System intel nuc_kit_nuc8i7hvk_firmware < hnkbki70.0070 Yes
Hardware intel nuc_kit_nuc8i7hvk - No
Operating System intel nuc_kit_nuc8i7hnk_firmware < hnkbki70.0070 Yes
Hardware intel nuc_kit_nuc8i7hnk - No
Operating System intel compute_stick_stk2mv64cc_firmware < ccsklm5v.0067 Yes
Hardware intel compute_stick_stk2mv64cc - No
Operating System intel nuc_7_essential_nuc7cjysamn_firmware < ayaplcel.0074 Yes
Hardware intel nuc_7_essential_nuc7cjysamn - No
Operating System intel nuc_kit_nuc7cjyhn_firmware < ayaplcel.0074 Yes
Hardware intel nuc_kit_nuc7cjyhn - No
Operating System intel nuc_kit_nuc7pjyhn_firmware < ayaplcel.0074 Yes
Hardware intel nuc_kit_nuc7pjyhn - No
Operating System intel nuc_kit_nuc7pjyh_firmware < ayaplcel.0074 Yes
Hardware intel nuc_kit_nuc7pjyh - No
Operating System intel nuc_7_essential_nuc7cjysal_firmware < ayaplcel.0074 Yes
Hardware intel nuc_7_essential_nuc7cjysal - No
Operating System intel nuc_kit_nuc7cjyh_firmware < ayaplcel.0074 Yes
Hardware intel nuc_kit_nuc7cjyh - No
Operating System intel nuc_7_home_nuc7i5bnhxf_firmware < bnkbl357.0089 Yes
Hardware intel nuc_7_home_nuc7i5bnhxf - No
Operating System intel nuc_kit_nuc7i5bnhx1_firmware < bnkbl357.0089 Yes
Hardware intel nuc_kit_nuc7i5bnhx1 - No
Operating System intel nuc_kit_nuc7i5bnh_firmware < bnkbl357.0089 Yes
Hardware intel nuc_kit_nuc7i5bnh - No
Operating System intel nuc_kit_nuc7i3bnk_firmware < bnkbl357.0089 Yes
Hardware intel nuc_kit_nuc7i3bnk - No
Operating System intel nuc_7_enthusiast_nuc7i7bnhxg_firmware < bnkbl357.0089 Yes
Hardware intel nuc_7_enthusiast_nuc7i7bnhxg - No
Operating System intel nuc_kit_nuc7i3bnhx1_firmware < bnkbl357.0089 Yes
Hardware intel nuc_kit_nuc7i3bnhx1 - No
Operating System intel nuc_7_enthusiast_nuc7i7bnkq_firmware < bnkbl357.0089 Yes
Hardware intel nuc_7_enthusiast_nuc7i7bnkq - No
Operating System intel nuc_7_home_nuc7i3bnhxf_firmware < bnkbl357.0089 Yes
Hardware intel nuc_7_home_nuc7i3bnhxf - No
Operating System intel nuc_7_home_nuc7i5bnkp_firmware < bnkbl357.0089 Yes
Hardware intel nuc_7_home_nuc7i5bnkp - No
Operating System intel nuc_kit_nuc7i5bnk_firmware < bnkbl357.0089 Yes
Hardware intel nuc_kit_nuc7i5bnk - No
Operating System intel nuc_kit_nuc7i7bnh_firmware < bnkbl357.0089 Yes
Hardware intel nuc_kit_nuc7i7bnh - No
Operating System intel nuc_kit_nuc7i3bnh_firmware < bnkbl357.0089 Yes
Hardware intel nuc_kit_nuc7i3bnh - No
Operating System intel nuc_kit_nuc7i7bnhx1_firmware < bnkbl357.0089 Yes
Hardware intel nuc_kit_nuc7i7bnhx1 - No
Operating System intel nuc_board_nuc7i3bnb_firmware < bnkbl357.0089 Yes
Hardware intel nuc_board_nuc7i3bnb - No
Operating System intel nuc_board_nuc7i7bnb_firmware < bnkbl357.0089 Yes
Hardware intel nuc_board_nuc7i7bnb - No
Operating System intel nuc_board_nuc7i5bnb_firmware < bnkbl357.0089 Yes
Hardware intel nuc_board_nuc7i5bnb - No
Operating System intel nuc_8_home_nuc8i3cysn_firmware < cycnli35.0054 Yes
Hardware intel nuc_8_home_nuc8i3cysn - No
Operating System intel nuc_8_home_nuc8i3cysm_firmware < cycnli35.0054 Yes
Hardware intel nuc_8_home_nuc8i3cysm - No
Operating System intel nuc_8_mainstream-g_kit_nuc8i7inh_firmware < inwhl357.0047 Yes
Hardware intel nuc_8_mainstream-g_kit_nuc8i7inh - No
Operating System intel nuc_8_mainstream-g_mini_pc_nuc8i7inh_firmware < inwhl357.0047 Yes
Hardware intel nuc_8_mainstream-g_mini_pc_nuc8i7inh - No
Operating System intel nuc_8_mainstream-g_kit_nuc8i5inh_firmware < inwhl357.0047 Yes
Hardware intel nuc_8_mainstream-g_kit_nuc8i5inh - No
Operating System intel nuc_8_mainstream-g_mini_pc_nuc8i5inh_firmware < inwhl357.0047 Yes
Hardware intel nuc_8_mainstream-g_mini_pc_nuc8i5inh - No
Operating System intel nuc_7_essential_nuc7cjysamn_firmware < jyglkcpx.0069 Yes
Hardware intel nuc_7_essential_nuc7cjysamn - No
Operating System intel nuc_kit_nuc7cjyhn_firmware < jyglkcpx.0069 Yes
Hardware intel nuc_kit_nuc7cjyhn - No
Operating System intel nuc_kit_nuc7pjyhn_firmware < jyglkcpx.0069 Yes
Hardware intel nuc_kit_nuc7pjyhn - No
Operating System intel nuc_kit_nuc7pjyh_firmware < jyglkcpx.0069 Yes
Hardware intel nuc_kit_nuc7pjyh - No
Operating System intel nuc_7_essential_nuc7cjysal_firmware < jyglkcpx.0069 Yes
Hardware intel nuc_7_essential_nuc7cjysal - No
Operating System intel nuc_kit_nuc7cjyh_firmware < jyglkcpx.0069 Yes
Hardware intel nuc_kit_nuc7cjyh - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For intel's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.