Larger or geographically dispersed organizations often make use of multi-level certificate hierarchies that rely on one or more intermediate CAs to issue certificates. The interim CAs themselves are certified by the Root CA.
To authenticate final certificates, it must be possible to check the entire certificate hierarchy.