Authentication bypass in the Intel RAID Web Console 3 for Windows before 4.186 may allow an unprivileged user to potentially gain administrative privileges via local access.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/106028 | vdb entry third party advisory |
https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00196.html | vendor advisory |