CVE-2018-6263: High severity nvidia geforce experience vulnerability
Published Nov 27, 2018
·Updated
NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 on Windows in which an attacker who has access to a local user account can plant a malicious dynamic link library (DLL) during application installation, which may lead to escalation of privileges.
Affected Software
2 affected components
Nvidia GeForce Experience<3.16
Microsoft Windows
Remediation
Patch Available
Event History
Nov 27, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of the NVIDIA GeForce Experience vulnerability?
The vulnerability ID is CVE-2018-6263.
2
What is the severity of CVE-2018-6263?
The severity of CVE-2018-6263 is high, with a severity value of 7.8.
3
What is affected by CVE-2018-6263?
NVIDIA GeForce Experience versions prior to 3.16 on Windows are affected by CVE-2018-6263.
4
What is the impact of CVE-2018-6263?
An attacker with access to a local user account can plant a malicious DLL during application installation, potentially leading to privilege escalation.
5
How can the NVIDIA GeForce Experience vulnerability be fixed?
To mitigate this vulnerability, users should update to version 3.16 or later of NVIDIA GeForce Experience.