CVE-2025-20017
CVE-2025-20017
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.4EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
12 Aug 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Uncontrolled search path for some Intel(R) oneAPI Toolkit and component software installers may allow an authenticated user to potentially enable escalation of privilege via local access.
CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
n/a · Intel(R) oneAPI Toolkit and component software installersWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →