
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2019-11133 is a security vulnerability discovered in the Intel(R) Processor Diagnostic Tool, affecting versions before 4.1.2.24. The vulnerability was disclosed on July 11, 2019, and involves improper access control mechanisms within the diagnostic tool, which is a free product designed to help users test and diagnose processor issues (Intel Advisory, NVD).
The vulnerability received a CVSS 3.0 base score of 7.8 (High severity), with a vector string of CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H. This scoring indicates that the vulnerability requires local access and low privileges to exploit, but can result in high impacts across confidentiality, integrity, and availability (NVD, Threatpost).
The vulnerability can lead to multiple severe consequences including privilege escalation, information disclosure, and denial of service when exploited by an authenticated user with local access. The high CVSS score reflects the significant potential impact on affected systems (Intel Advisory, Threatpost).
The vulnerability requires local access and authentication for exploitation. While specific exploit details are not publicly disclosed, the flaw was discovered by researcher Jesse Michael from Eclypsium (Threatpost).
Intel has released a patch to address this vulnerability. Users of the Intel Processor Diagnostic Tool should update to version 4.1.2.24 or later to mitigate the risk. The patch is available through Intel's official channels (Intel Advisory, Threatpost).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."