PT-2025-46381 · Intel · Intel(R) Cip
Published
2025-11-11
·
Updated
2025-11-26
·
CVE-2025-20614
CVSS v3.1
6.7
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Intel(R) CIP software versions prior to WIN DCA 2.4.0.11001
Description
The software contains a flaw related to external control of file name or path within Ring 3 User Applications, potentially allowing an escalation of privilege. A local attacker with a privileged user account and low complexity attack capabilities may exploit this issue. The potential impact to the system includes confidentiality (high), integrity (low), and availability (none). Subsequent system impacts include no effect on confidentiality, integrity, or availability.
Recommendations
Update to version WIN DCA 2.4.0.11001 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intel(R) Cip