TROYANOSYVIRUS
Voltar para CVEs

CVE-2024-28952

MEDIUM
6.7

Descricao

Uncontrolled search path for some Intel(R) IPP software for Windows before version 2021.12.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

Detalhes CVE

Pontuacao CVSS v3.16.7
SeveridadeMEDIUM
Vetor CVSSCVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Vetor de ataqueLOCAL
ComplexidadeHIGH
Privilegios necessariosLOW
Interacao do usuarioREQUIRED
Publicado11/13/2024
Ultima modificacao9/2/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

intel:integrated_performance_primitivesintel:oneapi_base_toolkitmicrosoft:windows

Fraquezas (CWE)

CWE-427

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.