CVE-2018-3635

Insufficient input validation in installer in Intel Rapid Store Technology (RST) before version 16.7 may allow an unprivileged user to potentially elevate privileges or cause an installer denial of service via local access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:intel:rapid_storage_technology:*:*:*:*:*:*:*:*

History

26 Mar 2021, 21:02

Type Values Removed Values Added
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
CWE CWE-20 CWE-269
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
CWE CWE-20 CWE-269
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
CWE CWE-20 CWE-269
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
CWE CWE-20 CWE-269
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
CWE CWE-20 CWE-269
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
References (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 - Mailing List, Third Party Advisory
CWE CWE-20 CWE-269
CWE CWE-20 CWE-269

23 Mar 2021, 21:15

Type Values Removed Values Added
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
References
  • (FULLDISC) http://seclists.org/fulldisclosure/2021/Mar/55 -
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20
CWE CWE-269 CWE-20

Information

Published : 2018-11-14 14:29

Updated : 2023-12-10 12:44


NVD link : CVE-2018-3635

Mitre link : CVE-2018-3635

CVE.ORG link : CVE-2018-3635


JSON object : View

Products Affected

intel

  • rapid_storage_technology
CWE
CWE-269

Improper Privilege Management