intel Vulnerabilities and Affected Products
Vulnerabilities associated with graphics_performance_analyzer.
Products
Clear product- RAID Web Console 3 (RWC3)19 vulnerabilities
- Intel(R) Graphics Drivers16 vulnerabilities
- power_gadget_software11 vulnerabilities
- VirusScan Enterprise Linux (VSEL)10 vulnerabilities
- ethernet_complete_driver_pack7 vulnerabilities
- graphics_performance_analyzer7 vulnerabilities
- raid_web_console_36 vulnerabilities
- media_sdk5 vulnerabilities
- neural_compressor_software5 vulnerabilities
- oneapi_base_toolkit5 vulnerabilities
- 4th_generation_intel_xeon_processor_scalable_family4 vulnerabilities
- 5th_generation_intel_xeon_processor_scalable_family4 vulnerabilities
- advisor4 vulnerabilities
- ethernet_controller_i225_manageability_firmware4 vulnerabilities
- server_system_d50tnp2mhsvac_firmware4 vulnerabilities
- vroc_software4 vulnerabilities
- agilex_7_fpga_f-series_019_firmware3 vulnerabilities
- aptio_v_uefi_firmware_integrator_tools3 vulnerabilities
- bios3 vulnerabilities
- comet_lake3 vulnerabilities
- context_sensing_technology3 vulnerabilities
- driver\&support_assistant3 vulnerabilities
- dsa_software3 vulnerabilities
- ethernet_adapter3 vulnerabilities
- ethernet_adapter_complete_driver_pack3 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-28046MEDIUM | Uncontrolled search path in some Intel(R) GPA software before version 2024.1 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-427Aug 14, 2024 | CVSS5.4v4.0 | EPSS0.139% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-35192MEDIUM | Uncontrolled search path in some Intel(R) GPA Framework software before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-427May 16, 2024 | CVSS6.7v3.1 | EPSS0.203% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-43629HIGH | Incorrect default permissions in some Intel(R) GPA software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-276May 16, 2024 | CVSS7.8v3.1 | EPSS0.211% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-43748HIGH | Improper access control in some Intel(R) GPA Framework software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-284May 16, 2024 | CVSS7.8v3.1 | EPSS0.211% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-24460HIGH | Incorrect default permissions in some Intel(R) GPA software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-276May 16, 2024 | CVSS8.2v3.1 | EPSS0.193% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-21788MEDIUM | Uncontrolled search path in some Intel(R) GPA software before version 2023.4 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-427May 16, 2024 | CVSS6.7v3.1 | EPSS0.191% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-21861MEDIUM | Uncontrolled search path in some Intel(R) GPA Framework software before version 2023.4 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-427May 16, 2024 | CVSS6.7v3.1 | EPSS0.178% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |