CVE-2018-3697

HIGH

Intel Media Server Studio - Incorrect Permission Assignment

Title source: rule
STIX 2.1

Description

Improper directory permissions in the installer for the Intel Media Server Studio may allow unprivileged users to potentially enable an escalation of privilege via local access.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/106025

Scores

CVSS v3 7.8
EPSS 0.0004
EPSS Percentile 11.0%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-732
Status published
Products (3)
intel/media_server_studio 2015 r6
intel/media_server_studio 2016 (2 CPE variants)
intel/media_server_studio 2017 (4 CPE variants)
Published Nov 14, 2018
Tracked Since Feb 18, 2026