Uncontrolled Search Path May Lead to Privilege Escalation
CVE-2024-38383

7.8HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
13 November 2024

Summary

The Intel Quartus Prime Pro Edition software for Windows, prior to version 24.2, contains an uncontrolled search path vulnerability that could be exploited by authenticated users. This flaw permits local access, potentially allowing attackers to escalate privileges on the affected system. It is crucial for users to update their software to mitigate potential security risks.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.