CVE-2018-3649
DLL injection vulnerability in the installation executables (Autorun.exe and Setup.exe) for Intel's wireless drivers and related software in Intel Dual Band Wireless-AC, Tri-Band Wireless-AC and Wireless-AC family of products allows a local attacker to cause escalation of privilege via remote code execution.
Published:May 10, 2018
Last Modified:Nov 21, 2024
EPS:May 10, 2018
EPSS Score:0.00162
CVSS Score:7.8
Affected Products
Vendor
Product
Action
Vendor
Intel
Product
Dual Band Wireless-ac 3160
Intel
Dual Band Wireless-ac 3160
Vendor
Intel
Product
Dual Band Wireless-ac 3165
Intel
Dual Band Wireless-ac 3165
Vendor
Intel
Product
Dual Band Wireless-ac 3168
Intel
Dual Band Wireless-ac 3168
Vendor
Intel
Product
Dual Band Wireless-ac 7260
Intel
Dual Band Wireless-ac 7260
Vendor
Intel
Product
Dual Band Wireless-ac 7265
Intel
Dual Band Wireless-ac 7265
Vendor
Intel
Product
Dual Band Wireless-ac 8260
Intel
Dual Band Wireless-ac 8260
Vendor
Intel
Product
Dual Band Wireless-ac 8265
Intel
Dual Band Wireless-ac 8265
Vendor
Intel
Product
Dual Band Wireless-n 7260
Intel
Dual Band Wireless-n 7260
Vendor
Intel
Product
Dual Band Wireless-n 7265
Intel
Dual Band Wireless-n 7265
Vendor
Intel
Product
Tri-band Wireless-ac 17265
Intel
Tri-band Wireless-ac 17265
Vendor
Intel
Product
Tri-band Wireless-ac 18260
Intel
Tri-band Wireless-ac 18260
Vendor
Intel
Product
Tri-band Wireless-ac 18265
Intel
Tri-band Wireless-ac 18265
Vendor
Intel
Product
Wireless-ac 9260
Intel
Wireless-ac 9260
Vendor
Intel
Product
Wireless-ac 9461
Intel
Wireless-ac 9461
Vendor
Intel
Product
Wireless-ac 9462
Intel
Wireless-ac 9462
Vendor
Intel
Product
Wireless-ac 9560
Intel
Wireless-ac 9560
Vendor
Intel
Product
Wireless-n 7260
Intel
Wireless-n 7260
Vendor
Intel
Product
Wireless-n 7265
Intel
Wireless-n 7265
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
