ZDI-CAN-23927: ZDI-24-1613: Intel Driver & Support Assistant Log Folder Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Intel Driver & Support Assistant. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-36488.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-23927?
The severity of ZDI-CAN-23927 is considered high due to its potential for privilege escalation.
How do I fix ZDI-CAN-23927?
To fix ZDI-CAN-23927, update the Intel Driver & Support Assistant to the latest version provided by Intel.
Who is affected by ZDI-CAN-23927?
Users of the Intel Driver & Support Assistant are affected by ZDI-CAN-23927, specifically those using older versions.
What type of attacks can ZDI-CAN-23927 enable?
ZDI-CAN-23927 can enable local attackers to escalate privileges on the affected system.
What is required to exploit ZDI-CAN-23927?
An attacker must first have the ability to execute low-privileged code on the target system to exploit ZDI-CAN-23927.