Record summary

CVE-2024-37025 has a selected CVSS score of 5.4 (medium).

Description

Incorrect execution-assigned permissions in some Intel(R) Advanced Link Analyzer Standard Edition software installer before version 23.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Nov 14, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Default status: unknown

CVE ListBefore 23.1.1affected

Intel(R) Advanced Link Analyzer Standard Edition software installer

Default status: unaffected

CVE Listbefore version 23.1.1affected

References

2