← Vulnerability feed

Vulnerability record · CVE-2026-20890 · published 11 August 2026

CVE-2026-20890: Intel proset\/wireless wifi improper privilege management vulnerability

Intel · Proset\/Wireless Wifi

Improper privilege management for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (high) impacts.

7.1 CVSS 4.0 High EPSS 0.12% · top 98.4% CWE-269 · Improper privilege management
7.1CVSS 4.0 base score
0.12%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
26 Aug 2026Last modified by NVD

Description

Improper privilege management for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (high) impacts.

CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:L/SI:L/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2026-20890 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2020-12313Intel proset\/wireless wifi vulnerabilityInsufficient control flow management in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potent…EPSS 0.90%8.4CVE-2026-20789Intel proset\/wireless wifi improper access control vulnerabilityImproper access control for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 2: Device Drivers may allow an escalation of privileg…EPSS 0.11%8.3CVE-2026-24911Intel proset\/wireless wifi stack-based buffer overflow vulnerabilityStack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivil…EPSS 0.36%8.3CVE-2026-22887Intel proset\/wireless wifi memory buffer overflow vulnerabilityImproper buffer restrictions for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivi…EPSS 0.18%8.3CVE-2026-20776Intel proset\/wireless wifi vulnerabilityImproper conditions check for some Intel(R) PROSet/Wireless WiFi Software within Ring 2: Device Drivers may allow a denial of service. Network advers…EPSS 0.35%8.3CVE-2026-20727Intel proset\/wireless wifi null pointer dereference vulnerabilityNull pointer dereference for some Intel(R) PROSet/Wireless WiFi Software for Windows within Ring 0: Kernel may allow a denial of service. Unprivilege…EPSS 0.35%8.3CVE-2026-20741Intel proset\/wireless wifi improper access control vulnerabilityImproper access control for some Intel(R) PROSet/Wireless WiFi Software within Ring 2: Device Drivers may allow a denial of service. Unprivileged sof…EPSS 0.12%8.3CVE-2025-20618Intel proset\/wireless wifi stack-based buffer overflow vulnerabilityStack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow a privileged user to potentia…EPSS 0.17%

Source: NIST National Vulnerability Database (record CVE-2026-20890), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.