Oneapi Rendering Toolkit
Vendor:
First CVE: Nov 17, 2021 · Active for 4 years
5
Total CVEs
More Total CVEs than 77% of tracked products
2.5
Avg CVEs / Year
Higher CVE frequency than 74% of tracked products
7.5
Avg CVSS
Higher Avg CVSS than 50% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Oneapi Rendering Toolkit over time
Volume of CVEsAvg CVSS Base Score
First CVE
Nov 17, 2021
4 years ago
Most Recent CVE
Aug 11, 2023
1,078 days ago
CVE Severity & Scoring
Oneapi Rendering Toolkit5 CVEs
20%
80%
All CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local5 (100.0%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low5 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None4 (80.0%)
Unknown0 (0.0%)
Required1 (20.0%)
Privileges Required
Low4 (80.0%)
High1 (20.0%)
None0 (0.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-29242HIGH Improper access control for Intel(R) oneAPI Toolkits before version 2021.1 Beta 10 may allow an authenticated user to potentially enable escalation of privilege via local access. | May 12, 2023 | 7.8 | 24 | NO | NO |
CVE-2021-33071HIGH Incorrect default permissions in the installer for the Intel(R) oneAPI Rendering Toolkit before version 2021.2 may allow an authenticated user to potentially enable escalation of p | Nov 17, 2021 | 7.8 | 24 | NO | NO |
CVE-2023-22355HIGH Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.0.251 may allow an authenticated user to potentially enable escalation | May 10, 2023 | 7.8 | 23 | NO | NO |
CVE-2023-28823HIGH Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow an authenticated user to potentially enable escalation | Aug 11, 2023 | 7.3 | 21 | NO | NO |
CVE-2023-27391MEDIUM Improper access control in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow a privileged user to potentially enable escalation of p | Aug 11, 2023 | 6.7 | 19 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (5 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (5 CVEs).
Media Mentions
Signals from CVEs in this product scope (5 CVEs).
Top CNAs Publishing CVEs For Oneapi Rendering Toolkit
Top CWEs
Versions
No cataloged versions.