CVE-2018-12177: High severity Intel Proset\/wireless Software vulnerability
Improper directory permissions in the ZeroConfig service in Intel(R) PROSet/Wireless WiFi Software before version 20.90.0.7 may allow an authorized user to potentially enable escalation of privilege via local access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-12177?
CVE-2018-12177 is a vulnerability in the ZeroConfig service in Intel PROSet/Wireless WiFi Software that allows an authorized user to potentially enable escalation of privilege via local access.
What is the severity of CVE-2018-12177?
The severity of CVE-2018-12177 is high with a CVSS score of 7.8.
What software is affected by CVE-2018-12177?
Intel PROSet/Wireless WiFi Software before version 20.90.0.7 is affected by CVE-2018-12177.
How can an attacker exploit CVE-2018-12177?
An attacker with local access can potentially exploit CVE-2018-12177 to escalate privileges.
Where can I find more information about CVE-2018-12177?
More information about CVE-2018-12177 can be found at the following link: [Intel Security Advisory INTEL-SA-00182](https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00182.html).