CVE-2025-24834
BaseFortify
Publication date: 2025-11-11
Last updated on: 2025-11-26
Assigner: Intel Corporation
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| intel | computing_improvement_program | to 2.4.11001 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-693 | The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is a protection mechanism failure in some Intel CIP software versions before WIN_DCA_2.4.0.11001. It allows an unprivileged, unauthenticated user application to potentially disclose information without requiring user interaction. The attack can be performed with low complexity and may occur via adjacent access without special internal knowledge.
How can this vulnerability impact me? :
The vulnerability can lead to information disclosure, impacting the confidentiality of the system. It does not affect the integrity or availability of the system. An attacker could potentially access sensitive data without authorization.