cvedb.io
CVE-2015-2291
HIGH · CVSS 7.8 ⚠ KEV — EXPLOITED
EPSS exploitation probability: 95%
⚠ Listed in the CISA Known Exploited Vulnerabilities catalog — actively exploited.
Published 2023-02-10 · Last modified 2026-08-04T05:16:26.340

Summary

(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.

Affected products

Intel — Ethernet Diagnostics Driver for Windows

Does this affect you?

Add your gear to cvedb and we'll alert you only when Intel ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.