Cross-Site Scripting in Intel Quartus Prime Software
CVE-2022-26888
2.8LOW
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 16 February 2023
Summary
The Intel Quartus Prime Pro and Standard Edition software is susceptible to a cross-site scripting vulnerability. This vulnerability can be exploited by an authenticated user with local access, potentially leading to the unauthorized disclosure of sensitive information. Proper input validation and sanitization measures are crucial to mitigate the risk associated with this vulnerability.
Affected Version(s)
Intel(R) Quartus Prime Pro and Standard edition software See references
References
CVSS V3.1
Score:
2.8
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved