Quartus Prime
Vendor:
First CVE: Jul 10, 2018 · Active for 8 years
44
Total CVEs
More Total CVEs than 97% of tracked products
5.5
Avg CVEs / Year
Higher CVE frequency than 89% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 44% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Quartus Prime over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jul 10, 2018
8 years ago
Most Recent CVE
Jan 7, 2026
197 days ago
CVE Severity & Scoring
Quartus Prime44 CVEs
34%
66%
All CVEs352,101 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local39 (88.6%)
Network4 (9.1%)
Unknown0 (0.0%)
Physical1 (2.3%)
Adjacent Network0 (0.0%)
Attack Complexity
Low34 (77.3%)
High10 (22.7%)
Unknown0 (0.0%)
User Interaction
None27 (61.4%)
Unknown0 (0.0%)
Required17 (38.6%)
Privileges Required
Low40 (90.9%)
High0 (0.0%)
None4 (9.1%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (44 CVEs).
44 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-43474HIGH Uncontrolled search path for the DSP Builder software installer before version 22.4 for Intel(R) FPGAs Pro Edition may allow an authenticated user to potentially enable escalation | May 10, 2023 | 7.8 | 25 | NO | NO |
CVE-2022-32570HIGH Improper authentication in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local acce | Feb 16, 2023 | 7.8 | 25 | NO | NO |
CVE-2022-21204HIGH Improper permissions for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an authenticated user to potentially enable escalation of privilege via local access. | Feb 9, 2022 | 7.8 | 25 | NO | NO |
CVE-2021-44454HIGH Improper input validation in a third-party component for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an authenticated user to potentially enable escalation | Feb 9, 2022 | 7.8 | 25 | NO | NO |
CVE-2019-0171HIGH Improper directory permissions in the installer for Intel(R) Quartus(R) software may allow an authenticated user to potentially enable escalation of privilege via local access. | May 17, 2019 | 7.8 | 25 | NO | NO |
CVE-2024-38383HIGH Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition software for Windows before version 24.2 may allow an authenticated user to potentially enable escalation of | Nov 13, 2024 | 7.8 | 24 | NO | NO |
CVE-2022-41693HIGH Uncontrolled search path in the Intel(R) Quartus(R) Prime Pro edition software before version 22.3 may allow an authenticated user to potentially enable escalation of privilege via | May 10, 2023 | 7.8 | 24 | NO | NO |
CVE-2022-33892HIGH Path traversal in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local access. | Feb 16, 2023 | 7.8 | 24 | NO | NO |
CVE-2022-26840HIGH Improper neutralization in the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local acce | Feb 16, 2023 | 7.8 | 24 | NO | NO |
CVE-2022-27233HIGH XML injection in the Quartus(R) Prime Programmer included in the Intel(R) Quartus Prime Pro and Standard edition software may allow an unauthenticated user to potentially enable in | Nov 11, 2022 | 7.5 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (44 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (44 CVEs).
Media Mentions
Signals from CVEs in this product scope (44 CVEs).
Top CNAs Publishing CVEs For Quartus Prime
Top CWEs
Versions
No cataloged versions.