CVE-2015-2291

HIGH KEV RANSOMWARE

Intel Ethernet Diagnostics Driver Iqv... - Improper Input Validation

Title source: rule

Description

(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.

Exploits (7)

exploitdb WORKING POC
by Glafkos Charalambous · textdoswindows
https://www.exploit-db.com/exploits/36392
nomisec WORKING POC 5 stars
by Tare05 · poc
https://github.com/Tare05/Intel-CVE-2015-2291
nomisec WORKING POC 4 stars
by gmh5225 · local
https://github.com/gmh5225/CVE-2015-2291
nomisec WORKING POC 1 stars
by ethanedits · local
https://github.com/ethanedits/iqvw64e-privilege-escalation
nomisec WRITEUP 1 stars
by paysonism · poc
https://github.com/paysonism/CVE-2015-2291-Spoofer-Analysis

Scores

CVSS v3 7.8
EPSS 0.0468
EPSS Percentile 89.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2023-02-10
VulnCheck KEV 2023-01-10
InTheWild.io 2023-02-10
ENISA EUVD EUVD-2015-2389
Ransomware Use Confirmed
CWE
CWE-20
Status published
Products (2)
intel/ethernet_diagnostics_driver_iqvw32.sys 1.03.0.7
intel/ethernet_diagnostics_driver_iqvw64.sys 1.03.0.7
Published Aug 09, 2017
KEV Added Feb 10, 2023
Tracked Since Feb 18, 2026