CVE-2024-28172
published 2024-08-14CVE-2024-28172: Uncontrolled search path for some Intel(R) Trace Analyzer and Collector software before version 2022.1 may allow an authenticated user to potentially enable…
medium5.4CVSS 4.0
AVLACHATPPRLUIAVCHVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
Uncontrolled search path for some Intel(R) Trace Analyzer and Collector software before version 2022.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| intel | oneapi_hpc_toolkit | < 2024.1.0 | 2024.1.0 |
| intel | trace_analyzer_and_collector | < 2022.1 | 2022.1 |