
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-20891 is an improper authentication vulnerability in Intel PROSet/Wireless WiFi Software for Windows affecting the Ring 2 (Device Drivers) layer, which may allow a local attacker to escalate privileges and execute code. All versions prior to 24.10.0 are affected. The vulnerability was published on August 11, 2026, by Intel via security advisory INTEL-SA-01422. It carries a CVSS v3.1 base score of 7.9 (High) and a CVSS v4.0 base score of 6.3 (Medium) (Intel Advisory).
The root cause is classified as CWE-287 (Improper Authentication) within the Ring 2 device driver layer of Intel PROSet/Wireless WiFi Software for Windows. An unprivileged local software adversary, combined with an unauthenticated user context, can exploit this flaw with low attack complexity and no user interaction required to achieve local code execution. The vulnerability has a changed scope, meaning successful exploitation can affect resources beyond the vulnerable component itself — specifically, the subsequent system impact includes high confidentiality loss, and low integrity and availability impacts. No special internal knowledge or elevated privileges are required to trigger the flaw (Intel Advisory).
Successful exploitation allows a local attacker to escalate privileges and execute arbitrary code within the context of the vulnerable driver, potentially compromising sensitive information accessible to higher-privilege components. The changed scope means the impact extends beyond the driver itself, resulting in high confidentiality impact, and low integrity and availability impacts on the broader system. While lateral movement over the network is not directly enabled by this local vulnerability, privilege escalation could serve as a stepping stone for further compromise of the affected Windows host (Intel Advisory).
There is currently no evidence of in-the-wild exploitation, and no public proof-of-concept exploit code has been identified. The EPSS score is approximately 0.158%, indicating a low probability of exploitation in the near term. The vulnerability is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, and NVD's SSVC assessment classifies exploitation status as "none" with technical impact as "partial" (Intel Advisory).
Intel recommends updating Intel PROSet/Wireless WiFi Software for Windows to version 24.10.0 or later, which addresses this vulnerability. Users should obtain the updated software through Intel's official download center or via their OEM/system vendor (e.g., HP has published a corresponding support bulletin). No specific configuration-based workaround has been published; upgrading to the patched version is the primary remediation (Intel Advisory).
HP has published a support bulletin (ESB-2026.9496 via AusCERT) addressing this vulnerability for affected HP systems, indicating OEM-level response to the advisory. No notable independent researcher commentary or significant social media discussion has been identified at this time (Intel Advisory).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."