Uncontrolled Search Path in Intel Quartus Prime Pro Edition Software
CVE-2024-21777
7.3HIGH
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 16 May 2024
Summary
The Intel Quartus Prime Pro Edition Design Software prior to version 23.4 is susceptible to an uncontrolled search path vulnerability. This flaw allows an authenticated user with local access to potentially exploit the system, leading to escalation of privileges. Users are advised to update their software to address this security issue.
Affected Version(s)
Intel(R) Quartus(R) Prime Pro Edition Design software before version 23.4
References
CVSS V3.1
Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved