Altera Quartus Prime Pro
cpe:2.3:a:intel:quartus_prime_pro:*:*:*:*:*:*:*
- >= 17.0, <= 25.1.1
A vulnerability allowing search order hijacking has been identified in Altera Quartus Prime Pro Edition for Windows, specifically within the System Console utility. This vulnerability, categorized as an uncontrolled search path element issue, affects versions 17.0 through 25.1.1. The vulnerability arises from a current working directory planting attack, which could potentially lead to unauthorized privilege escalation.
Exploitation of this vulnerability could result in unauthorized privilege escalation.
Users are advised to upgrade to Quartus Prime Pro Edition 25.1.1 or later. For those using Quartus Prime Pro Edition Programmer and Tools, version 25.1.1 or later should be used.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.