Skip to main content

Vendor/product archive

nvidia / geforce_experience CVEs

Beta · best-effort

37 CVEs tagged to nvidia / geforce_experience1 Critical, 24 High, 10 Medium, 2 Low, 0 Unrated.

CVE-2021-1073

Published Jun 25, 2021

NVIDIA GeForce Experience, all versions prior to 3.23, contains a vulnerability in the login flow when a user tries to log in by using a browser, while, at the same time, any othe…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2021-1079

Published Apr 20, 2021

NVIDIA GeForce Experience, all versions prior to 3.22, contains a vulnerability in GameStream plugins where log files are created using NT/System level permissions, which may lead…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-1072

Published Feb 5, 2021

NVIDIA GeForce Experience, all versions prior to 3.21, contains a vulnerability in GameStream (rxdiag.dll) where an arbitrary file deletion due to improper handling of log files m…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-5990

Published Oct 23, 2020

NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in the ShadowPlay component which may lead to local privilege escalation, code execution, deni…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-5978

Published Oct 23, 2020

NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in its services in which a folder is created by nvcontainer.exe under normal user login with L…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-5977

Published Oct 23, 2020

NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in NVIDIA Web Helper NodeJS Web Server in which an uncontrolled search path is used to load a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5702

Published Dec 24, 2019

NVIDIA GeForce Experience, all versions prior to 3.20.2, contains a vulnerability when GameStream is enabled in which an attacker with local system access can corrupt a system fil…

CVSS 7.8 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2019-5701

Published Nov 9, 2019

NVIDIA GeForce Experience, all versions prior to 3.20.0.118, contains a vulnerability when GameStream is enabled in which an attacker with local system access can load the Intel g…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5689

Published Nov 9, 2019

NVIDIA GeForce Experience, all versions prior to 3.20.1, contains a vulnerability in the Downloader component in which a user with local system access can craft input that may all…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5678

Published May 31, 2019

NVIDIA GeForce Experience versions prior to 3.19 contains a vulnerability in the Web Helper component, in which an attacker with local system access can craft input that may not b…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2019-5674

Published Mar 28, 2019

NVIDIA GeForce Experience before 3.18 contains a vulnerability when ShadowPlay or GameStream is enabled. When an attacker has access to the system and creates a hard link, the sof…

CVSS 7.0 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2018-6265

Published Nov 27, 2018

NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 during application installation on Windows 7 in elevated privilege mode, where a local user who in…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6263

Published Nov 27, 2018

NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 on Windows in which an attacker who has access to a local user account can plant a malicious dynam…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6262

Published Oct 2, 2018

NVIDIA GeForce Experience prior to 3.15 contains a vulnerability when GameStream is enabled where limited sensitive user information may be available to users with system access,…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2018-6261

Published Oct 2, 2018

NVIDIA GeForce Experience prior to 3.15 contains a vulnerability when GameStream is enabled which sets incorrect permissions on a file, which may to code execution, denial of serv…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 37 CVEsPage 1 of 2