Cross-Site Scripting in Intel Quartus Prime Software
CVE-2022-26888

2.8LOW

What is CVE-2022-26888?

The Intel Quartus Prime Pro and Standard Edition software is susceptible to a cross-site scripting vulnerability. This vulnerability can be exploited by an authenticated user with local access, potentially leading to the unauthorized disclosure of sensitive information. Proper input validation and sanitization measures are crucial to mitigate the risk associated with this vulnerability.

Affected Version(s)

Intel(R) Quartus Prime Pro and Standard edition software See references

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.