CVE-2025-20079 is an uncontrolled search path vulnerability affecting Intel Advisor and Intel oneAPI Base Toolkit. An authenticated user with local access could exploit this with high attack complexity to achieve escalation of privilege, resulting in high impact to confidentiality, integrity, and availability. With a CVSS score of 6.7 (Medium), this vulnerability currently has no known public exploits, Metasploit modules, or community discussion, and is not listed on the KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2024.2CPE matchmatch criteria | cpe:2.3:a:intel:advisor:*:*:*:*:*:*:*:* | ||
< 2024.2CPE matchmatch criteria | cpe:2.3:a:intel:oneapi_base_toolkit:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.