PT-2026-7284 · Intel · Vtune Profiler+1

CVE-2025-20106

·

Publicado

2026-02-10

·

Atualizado

2026-02-10

CVSS v3.1

6.7

Média

VetorAV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions VTune(TM) Profiler software and Intel(R) oneAPI Base Toolkits versions prior to 2025.0
Description An uncontrolled search path exists in the software installer for VTune(TM) Profiler software and Intel(R) oneAPI Base Toolkits. This issue, occurring within Ring 3: User Applications, may allow an escalation of privilege. A system software adversary with an authenticated user and a high complexity attack may enable privilege escalation. This requires local access, active user interaction, and does not require special internal knowledge. The potential impact to the vulnerable system includes confidentiality, integrity, and availability.
Recommendations Update to version 2025.0 or later.

Correção

Uncontrolled Search Path Element

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-20106

Produtos afetados

Intel Oneapi Base Toolkit
Vtune Profiler