Local Security Bypass in Intel Security Anti-Virus Engine
CVE-2016-8032

7.3HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
31 March 2017

Summary

A vulnerability exists in the Intel Security Anti-Virus Engine versions 5200 through 5800 that allows local attackers to bypass security mechanisms. This can be achieved by crafting a specific input file that exploits weaknesses in the processing of inputs, ultimately compromising local security protections.

Affected Version(s)

Anti-Virus Engine (AVE) 5200 through 5800

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.