CVE-2018-3649: High severity Intel Dual Band Wireless-AC 3160 vulnerability
DLL injection vulnerability in the installation executables (Autorun.exe and Setup.exe) for Intel's wireless drivers and related software in Intel Dual Band Wireless-AC, Tri-Band Wireless-AC and Wireless-AC family of products allows a local attacker to cause escalation of privilege via remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this security vulnerability?
The vulnerability ID of this security vulnerability is CVE-2018-3649.
What is the severity of CVE-2018-3649?
The severity of CVE-2018-3649 is high with a severity value of 7.8.
Which software is affected by CVE-2018-3649?
The affected software includes Intel Dual Band Wireless-AC, Tri-Band Wireless-AC, and Wireless-AC family of products.
How can this vulnerability be exploited?
The vulnerability can be exploited through DLL injection in Intel's wireless drivers and related software installation executables (Autorun.exe and Setup.exe).
Is there a fix available for CVE-2018-3649?
Yes, Intel has released a security advisory and provided mitigations for this vulnerability. Please refer to the reference link for more information.