Cross-Site Scripting in Intel Quartus Prime Software
CVE-2022-26888

2.8LOW

Key Information:

Vendor
Intel
Vendor
CVE Published:
16 February 2023

Summary

The Intel Quartus Prime Pro and Standard Edition software is susceptible to a cross-site scripting vulnerability. This vulnerability can be exploited by an authenticated user with local access, potentially leading to the unauthorized disclosure of sensitive information. Proper input validation and sanitization measures are crucial to mitigate the risk associated with this vulnerability.

Affected Version(s)

Intel(R) Quartus Prime Pro and Standard edition software See references

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.