CVE-2018-3700

Code injection vulnerability in the installer for Intel(R) USB 3.0 eXtensible Host Controller Driver for Microsoft Windows 7 before version 5.0.4.43v2 may allow a user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:intel:usb_3.0_extensible_host_controller_driver:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_7:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:05

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/107073 - Third Party Advisory () http://www.securityfocus.com/bid/107073 - Third Party Advisory
References () https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00200.html - Patch, Vendor Advisory () https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00200.html - Patch, Vendor Advisory

Information

Published : 2019-02-18 17:29

Updated : 2024-11-21 04:05


NVD link : CVE-2018-3700

Mitre link : CVE-2018-3700

CVE.ORG link : CVE-2018-3700


JSON object : View

Products Affected

intel

  • usb_3.0_extensible_host_controller_driver

microsoft

  • windows_7
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')