CVE-2025-13663
BaseFortify
Publication date: 2025-12-11
Last updated on: 2025-12-11
Assigner: Altera
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| intel | quartus_prime | 4.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-279 | While it is executing, the product sets the permissions of an object in a way that violates the intended permissions that have been specified by the user. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability occurs in the Quartus Prime Pro Installer for Windows where, under certain circumstances, the installer does not verify the permissions of the target installation directory if that directory already exists. This means the installer might proceed without ensuring proper access controls on the installation folder.
How can this vulnerability impact me? :
The impact of this vulnerability could include unauthorized modification or access to the installation directory, potentially allowing an attacker with limited privileges to escalate their access or compromise the integrity of the installed software.