CVE-2018-12160
UnknownEPSS 0.43%
Last modified
CVE-2018-12160 is a vulnerability of currently unknown severity. DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may allow an authenticated user to potentially execute code using default directory permissions via local access.. EPSS estimates a 0.43% chance of exploitation in the next 30 days.
Description
DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may allow an authenticated user to potentially execute code using default directory permissions via local access.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Intel | Data Migration Software | <= 3.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-12160?
DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may allow an authenticated user to potentially execute code using default directory permissions via local access.
How severe is CVE-2018-12160?
Severity scoring for CVE-2018-12160 is pending analysis. The EPSS model estimates a 0.43% probability of exploitation in the next 30 days.
How do I fix CVE-2018-12160?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-12155Data leakage in cryptographic libraries for Intel IPP before…
- CVE-2018-12156Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2018-12157Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2018-12158Insufficient input validation in BIOS update utility in Inte…
- CVE-2018-12159Buffer overflow in the command-line interface for Intel(R) P…
- CVE-2018-1216A hard-coded password vulnerability was discovered in vApp M…
- CVE-2018-12161Insufficient session validation in the webserver component o…
- CVE-2018-12162Directory permissions in the Intel OpenVINO Toolkit for Wind…
- CVE-2018-12163A DLL injection vulnerability in the Intel IoT Developers Ki…
- CVE-2018-12164Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2018-12165Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2018-12166Insufficient write protection in firmware for Intel(R) Optan…
Are you affected by CVE-2018-12160?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
