VYPR
Unrated severityNVD Advisory· Published Jan 19, 2024· Updated Jun 17, 2025

CVE-2023-38587

CVE-2023-38587

Description

Improper input validation in some Intel NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Improper input validation in Intel NUC BIOS firmware allows a privileged user to escalate privileges locally.

Vulnerability

Improper input validation in some Intel NUC BIOS firmware [1] may allow a privileged user to potentially enable escalation of privilege via local access. The affected products include multiple Intel NUC models and their BIOS versions, as listed in the Intel advisory [1].

Exploitation

An attacker must have local access to the system and possess elevated privileges (such as administrative or root access) to exploit this vulnerability [1]. The specific sequence involves triggering the improper input validation within the BIOS firmware interface [1].

Impact

A successful exploit could allow the attacker to escalate their privileges further within the system, potentially gaining full control over the affected device [1]. This can lead to compromise of confidentiality, integrity, and availability of the system [1].

Mitigation

Intel has released BIOS updates to address this vulnerability [1]. Affected users should update their Intel NUC system BIOS to the fixed version provided by Intel [1]. No workarounds were mentioned in the advisory [1].

References
  1. INTEL-SA-01028

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.