CVE-2025-24327
BaseFortify
Publication date: 2025-11-11
Last updated on: 2025-11-11
Assigner: Intel Corporation
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| intel | rapid_storage_technology_application | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-277 | A product defines a set of insecure permissions that are inherited by objects that are created by the program. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability involves insecure inherited permissions in Intel Rapid Storage Technology Application versions before 20.0.1021. It allows an unprivileged, authenticated user to potentially escalate their privileges through a complex local attack that requires active user interaction. This could enable local code execution under certain conditions.
How can this vulnerability impact me? :
The vulnerability can impact the confidentiality, integrity, and availability of the affected system at a high level. It may allow an attacker to execute code locally with escalated privileges, potentially compromising system security and stability.