CVE-2018-6265: High severity nvidia geforce experience vulnerability
Published Nov 27, 2018
·Updated
NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 during application installation on Windows 7 in elevated privilege mode, where a local user who initiates a browser session may obtain escalation of privileges on the browser.
Affected Software
2 affected components
Nvidia GeForce Experience<3.16
Microsoft Windows 7
Remediation
Patch Available
Event History
Nov 27, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this NVIDIA GeForce Experience vulnerability?
The vulnerability ID for this NVIDIA GeForce Experience vulnerability is CVE-2018-6265.
2
What is the severity of CVE-2018-6265?
The severity of CVE-2018-6265 is high with a CVSS score of 7.8.
3
What is the affected software for this vulnerability?
The affected software for this vulnerability is NVIDIA GeForce Experience versions prior to 3.16 on Windows 7.
4
How can a local user exploit this vulnerability?
A local user who initiates a browser session may obtain escalation of privileges on the browser.
5
How can I fix this vulnerability?
To fix this vulnerability, upgrade NVIDIA GeForce Experience to version 3.16 or later.