CVE-2025-13663

CWE-2793 documents3 sources
Severity
5.4MEDIUM
EPSS
0.0%
top 95.07%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 11

Description

Under certain circumstances, the Quartus Prime Pro Installer for Windows does not check the permissions of the Quartus target installation directory if the target installation directory already exists.

CVSS vector

CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Packages2 packages

CVEListV5altera/quartus_prime_pro17.024.3.1

🔴Vulnerability Details

2
CVEList
Quartus Prime Pro Edition Installer Advisory2025-12-11
GHSA
GHSA-pcg2-78c9-xj3v: Under certain circumstances, the Quartus Prime Pro Installer for Windows does not check the permissions of the Quartus target installation directory i2025-12-11
CVE-2025-13663 (MEDIUM CVSS 5.4) | Under certain circumstances | cvebase.io