Intel Edge Orchestrator Information Disclosure Vulnerability on Tiber Edge Platform
Vulnerability
A vulnerability in some Edge Orchestrator software for the Intel Tiber Edge Platform may allow an authenticated user to disclose sensitive information to an unauthorized actor through local access. This issue arises from improper access control and insufficient management of execution-assigned permissions.
Impact
Exploitation of this vulnerability could lead to unauthorized information disclosure.
Remediation
Users are advised to update the Edge Orchestrator software to version 24.11 or later. The update is available for download from the Intel Edge Data Center website, specifically the 'Edge Orchestrator on-prem Deployment Guide'.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
