CVE-2020-5957Improper Privilege Management in Nvidia Geforce Experience

Severity
7.8HIGHNVD
EPSS
0.1%
top 67.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 5
Latest updateMay 24

Description

NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can corrupt a system file, which may lead to denial of service or escalation of privileges.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages4 packages

NVDnvidia/tesla_firmware440440.33.01
NVDnvidia/quadro_firmware390392.59+3
NVDnvidia/geforce_experience440442.50

🔴Vulnerability Details

2
GHSA
GHSA-r259-m89p-gjgg: NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system2022-05-24
CVEList
CVE-2020-5957: NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system2020-03-05
CVE-2020-5957 — Improper Privilege Management in Nvidia | cvebase