Intel Edge Orchestrator Information Disclosure Vulnerability on Tiber Edge Platform
Vulnerability
A vulnerability in some Edge Orchestrator software for the Intel Tiber Edge Platform allows an authenticated user to potentially disclose sensitive information to an unauthorized actor through local access. This issue arises from improper access control and inadequate conditions checks, which could be exploited by users with certain privileges.
Impact
Exploitation of this vulnerability could lead to unauthorized information disclosure.
Remediation
Users are advised to update the Edge Orchestrator software to version 24.11 or later. The update is available for download from the Intel Edge Data Center website, specifically the 'Edge Orchestrator AWS Deployment Guide' or the 'Edge Orchestrator On-Prem Deployment Guide'.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
