MEDIUM · 5.3

CVE-2018-12160

DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may allow an authenticated user to potentially execute code using default directory pe...

Vulnerability Description

DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may allow an authenticated user to potentially execute code using default directory permissions via local access.

CVSS Score

5.3

MEDIUM

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
LOW
Integrity
LOW
Availability
LOW

Affected Products

VendorProductVersions
IntelData Migration Software<= 3.1

Related Weaknesses (CWE)

References

FAQ

What is CVE-2018-12160?

CVE-2018-12160 is a vulnerability with a CVSS score of 5.3 (MEDIUM). DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may allow an authenticated user to potentially execute code using default directory pe...

How severe is CVE-2018-12160?

CVE-2018-12160 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2018-12160?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Data Migration Software.