Intel PCIe Switch Software Privilege Escalation Vulnerability

Vulnerability

A vulnerability allowing improper access control has been identified in some firmware packages and the LED mode toggle tool for Intel PCIe Switch software, prior to version MR4_1.0b1. This vulnerability may enable a privileged user to escalate privileges through local access.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation.

Remediation

Intel has issued a product discontinuation notice for the firmware package and LED mode toggle tool for Intel PCIe Switch software, effective April 4, 2025. Users are advised to uninstall or discontinue use of these tools as soon as possible.

Added: Aug 12, 2025, 6:27 PM
Updated: Aug 12, 2025, 6:27 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
2.8
remediation
0.0
relevance
0.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.