CVE-2018-12131

EUVD-2018-4109
Permissions in the driver pack installers for Intel NVMe before version 4.0.0.1007 and Intel RSTe before version 4.7.0.2083 may allow an authenticated user to potentially escalate privilege via local access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 11%
Affected Products (NVD)
VendorProductVersion
intelclient_nvme
𝑥
< 4.0.0.1007
inteldatacenter_nvme
𝑥
≤ 4.0.0.1006
intelrapid_storage_technology
𝑥
< 4.7.0.2083
𝑥
= Vulnerable software versions