← back
CVE-2022-31611

CVE-2022-31611

CVSS 6.8 MEDIUMEPSS 0.2%CWE-427
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.8EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
07 Feb 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
NVIDIA GeForce Experience contains an uncontrolled search path vulnerability in all its client installers, where an attacker with user level privileges may cause the installer to load an arbitrary DLL when the installer is launched. A successful exploit of this vulnerability could lead to escalation of privileges and code execution.
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →