Impact
The vulnerability is an improper authentication flaw in Intel PROSet/Wireless WiFi Software that permits a local attacker who already has privileged access to read protected data. The flaw can reveal confidential information; it does not affect integrity or availability. The weakness is a classic authentication bypass and is classified under CWE-287.
Affected Systems
Intel PROSet/Wireless WiFi Software. No specific versions are listed in the CVE data, so any version that is not the latest may be affected.
Risk and Exploitability
The CVSS score of 6.7 indicates a moderate severity, while the EPSS score of less than 1% suggests a very low likelihood of exploitation. The vulnerability is not included in CISA’s KEV catalog. The attack requires local, privileged access and low complexity efforts; thus, the risk is primarily to systems where users can gain such privileges.
OpenCVE Enrichment