← Back to CVE List
Vulnerability Intelligence Report

CVE-2022-41628

Uncontrolled search path element in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1.44 may allow an authenticated user to potentially enable escalation of privilege via local access.

No Active Exploit Signals
CVSS Base Score
6.7
MEDIUM
Exploitability:0.8
Impact Score:5.9
EPSS Probability:0.17%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

CWE-427 ↗Uncontrolled search path element

Affected Products & Versions

Vendor Product Affected Versions
intel nuc_p14e_laptop_element all
microsoft windows_10_1507 all
microsoft windows_10_1511 all
microsoft windows_10_1607 all
microsoft windows_10_1703 all
microsoft windows_10_1709 all
microsoft windows_10_1803 all
microsoft windows_10_1809 all
microsoft windows_10_1903 all
microsoft windows_10_1909 all
microsoft windows_10_2004 all
microsoft windows_10_20h2 all
microsoft windows_10_21h1 all
microsoft windows_10_21h2 all
microsoft windows_10_22h2 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.169%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityIntel Corporation · Vendor · USA
Reserved2022-09-29T03:00:05
Published2023-05-10T13:16:39
Last Updated2025-01-27T18:11:27

LINK COPIED TO CLIPBOARD