Improper neutralization of special elements used in SQL command in some Intel(R) Neural Compressor software before version v3.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Metrics
Affected Vendors & Products
References
History
Thu, 14 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Intel
Intel neural Compressor Software |
|
CPEs | cpe:2.3:a:intel:neural_compressor_software:*:*:*:*:*:*:*:* | |
Vendors & Products |
Intel
Intel neural Compressor Software |
|
Metrics |
ssvc
|
Wed, 13 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper neutralization of special elements used in SQL command in some Intel(R) Neural Compressor software before version v3.0 may allow an authenticated user to potentially enable escalation of privilege via local access. | |
Weaknesses | CWE-1336 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: intel
Published: 2024-11-13T21:12:08.831Z
Updated: 2024-11-14T19:36:18.202Z
Reserved: 2024-07-12T03:00:14.027Z
Link: CVE-2024-39766
Vulnrichment
Updated: 2024-11-14T15:12:49.843Z
NVD
Status : Awaiting Analysis
Published: 2024-11-13T21:15:27.480
Modified: 2024-11-15T14:00:09.720
Link: CVE-2024-39766
Redhat
No data.