CVE-2021-1079

MEDIUM

NVIDIA GeForce Experience <3.22 - Local Privilege Escalation

Title source: llm
STIX 2.1

Description

NVIDIA GeForce Experience, all versions prior to 3.22, contains a vulnerability in GameStream plugins where log files are created using NT/System level permissions, which may lead to code execution, denial of service, or local privilege escalation. The attacker does not have control over the consequence of a modification nor would they be able to leak information as a direct result of the overwrite.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://nvidia.custhelp.com/app/answers/detail/a_id/5184

Scores

CVSS v3 6.1
EPSS 0.0009
EPSS Percentile 26.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

Details

Status published
Products (1)
nvidia/geforce_experience < 3.22
Published Apr 20, 2021
Tracked Since Feb 18, 2026