← Vulnerability feed

Vulnerability record · CVE-2021-37409 · published 18 August 2022

CVE-2021-37409: Intel wireless-ac 9560 firmware incorrect authorization vulnerability

Intel · Wireless Ac 9560 Firmware

Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow a privileged user to potentially enable escalation of privilege via local access.

7.8 CVSS 3.1 High EPSS 0.24% · top 86.6% CWE-863 · Incorrect authorization
7.8CVSS 3.1 base score
0.24%EPSS exploitation probability, 30 days
NoNot in CISA KEV
13Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

13 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2021-37409 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2022-21139Intel wireless-ac 9560 firmware inadequate encryption strength vulnerabilityInadequate encryption strength for some Intel(R) PROSet/Wireless WiFi products may allow an unauthenticated user to potentially enable escalation of …EPSS 0.16%8.8CVE-2021-0162Intel amt ac 8260 firmware improper input validation vulnerabilityImproper input validation in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user …EPSS 0.41%8.8CVE-2021-0163Intel amt ac 8260 firmware improper input validation vulnerabilityImproper Validation of Consistency within input in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in Windows 10 and 11 may allow an…EPSS 0.41%8.4CVE-2021-0066Intel amt ac 8260 firmware improper input validation vulnerabilityImproper input validation in firmware for Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and Killer(TM) Wi-Fi in Windows 10 and 11 may …EPSS 0.32%7.8CVE-2022-21181Intel wireless-ac 9560 firmware improper input validation vulnerabilityImproper input validation for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow a privileged user to potentially enable escal…EPSS 0.27%7.8CVE-2021-23223Intel killer wi-fi 6e ax1690 firmware vulnerabilityImproper initialization for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products may allow a privileged user to potentially enable escalat…EPSS 0.27%7.8CVE-2021-33847Intel wi-fi 6 ax411 firmware memory buffer overflow vulnerabilityImproper buffer restrictions in firmware for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products before version 22.120 may allow…EPSS 0.22%7.8CVE-2021-0164Intel amt ac 8260 firmware vulnerabilityImproper access control in firmware for Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and Killer(TM) Wi-Fi in Windows 10 and 11 may al…EPSS 0.30%

Source: NIST National Vulnerability Database (record CVE-2021-37409), CISA KEV, FIRST EPSS (scores of 2026-10-06). This page is refreshed as NVD updates the record.