threat
engine
.sh
Back
·
··:··
Home
/
Product
/
nvidia geforce experience
Product
nvidia geforce experience
37 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2022-42292
< 3.27.0.112
NVIDIA GeForce Experience contains a vulnerability in the NVContainer component, where a user without administrator privileges can
5.0
MEDIUM
CVE-2022-42291
< 3.27.0.112
NVIDIA GeForce Experience contains a vulnerability in the installer, where a user installing the NVIDIA GeForce Experience softwar
8.2
HIGH
CVE-2022-31611
< 3.27.0.112
NVIDIA GeForce Experience contains an uncontrolled search path vulnerability in all its client installers, where an attacker with
6.8
MEDIUM
CVE-2021-23175
< 3.24.0.126
NVIDIA GeForce Experience contains a vulnerability in user authorization, where GameStream does not correctly apply individual use
8.2
HIGH
CVE-2021-1073
< 3.23
NVIDIA GeForce Experience, all versions prior to 3.23, contains a vulnerability in the login flow when a user tries to log in by u
8.3
HIGH
CVE-2021-1079
< 3.22
NVIDIA GeForce Experience, all versions prior to 3.22, contains a vulnerability in GameStream plugins where log files are created
6.1
MEDIUM
CVE-2021-1072
< 3.21
NVIDIA GeForce Experience, all versions prior to 3.21, contains a vulnerability in GameStream (rxdiag.dll) where an arbitrary file
6.0
MEDIUM
CVE-2020-5990
< 3.20.5.70
NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in the ShadowPlay component which may lead to
7.8
HIGH
CVE-2020-5978
< 3.20.5.70
NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in its services in which a folder is created
7.8
HIGH
CVE-2020-5977
< 3.20.5.70
NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in NVIDIA Web Helper NodeJS Web Server in whi
7.8
HIGH
CVE-2020-5964
< 3.20.4
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the service host component, in which the application
7.8
HIGH
CVE-2020-5958
>= 440 and < 442.50
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attack
7.8
HIGH
CVE-2020-5957
>= 440 and < 442.50
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attack
7.8
HIGH
CVE-2019-5702
< 3.20.2
NVIDIA GeForce Experience, all versions prior to 3.20.2, contains a vulnerability when GameStream is enabled in which an attacker
7.8
HIGH
CVE-2019-5695
< 3.20.1
NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions) contains a vulnerability in the local se
6.5
MEDIUM
CVE-2019-5701
< 3.20.0.118
NVIDIA GeForce Experience, all versions prior to 3.20.0.118, contains a vulnerability when GameStream is enabled in which an attac
7.8
HIGH
CVE-2019-5689
< 3.20.1
NVIDIA GeForce Experience, all versions prior to 3.20.1, contains a vulnerability in the Downloader component in which a user with
7.8
HIGH
CVE-2019-5678
< 3.19
NVIDIA GeForce Experience versions prior to 3.19 contains a vulnerability in the Web Helper component, in which an attacker with l
7.8
HIGH
CVE-2019-5676
< 3.19
NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in which it incorrectly loads Windo
6.7
MEDIUM
CVE-2019-5674
< 3.18
NVIDIA GeForce Experience before 3.18 contains a vulnerability when ShadowPlay or GameStream is enabled. When an attacker has acce
7.0
HIGH
CVE-2018-6266
< 3.16
NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 on Windows where a local user may obtain third pa
5.5
MEDIUM
CVE-2018-6265
< 3.16
NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 during application installation on Windows 7 in e
7.8
HIGH
CVE-2018-6263
< 3.16
NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 on Windows in which an attacker who has access to
7.8
HIGH
CVE-2018-6262
< 3.15
NVIDIA GeForce Experience prior to 3.15 contains a vulnerability when GameStream is enabled where limited sensitive user informati
2.5
LOW
CVE-2018-6261
< 3.15
NVIDIA GeForce Experience prior to 3.15 contains a vulnerability when GameStream is enabled which sets incorrect permissions on a
7.0
HIGH
CVE-2018-6259
>= 3.0.0 and < 3.14.1
NVIDIA GeForce Experience all versions prior to 3.14.1 contains a potential vulnerability when GameStream is enabled, an attacker
2.5
LOW
CVE-2018-6258
>= 3.0.0 and < 3.14.1
NVIDIA GeForce Experience all versions prior to 3.14.1 contains a potential vulnerability during GameStream installation where an
4.7
MEDIUM
CVE-2018-6257
>= 3.0.0 and < 3.14.1
NVIDIA GeForce Experience all versions prior to 3.14.1 contains a potential vulnerability when GameStream is enabled where imprope
7.0
HIGH
CVE-2017-0316
>= 3.0 and < 3.10.0.55
In GeForce Experience (GFE) 3.x before 3.10.0.55, NVIDIA Installer Framework contains a vulnerability in NVISystemService64 where
7.8
HIGH
CVE-2017-14491
>= 3.0 and < 3.10.0.55
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrar
9.8
CRITICAL
CVE-2017-6250
<= gfe_3.6.0.74
NVIDIA GeForce Experience contains a vulnerability in NVIDIA Web Helper.exe, where untrusted script execution may lead to violatio
8.8
HIGH
CVE-2016-8827
>= 3.0 and < 3.1.0.52
NVIDIA GeForce Experience 3.x before GFE 3.1.0.52 contains a vulnerability in NVIDIA Web Helper.exe where a local web API endpoint
6.5
MEDIUM
CVE-2016-8812
<= -
For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA GeForce Experience R340 before GFE 2.11.4.125 and R375 before GFE 3.1.0.5
8.8
HIGH
CVE-2016-5852
<= -
For the NVIDIA Quadro, NVS, and GeForce products, GFE GameStream and NVTray Plugin unquoted service path vulnerabilities are examp
7.8
HIGH
CVE-2016-4961
<= -
For the NVIDIA Quadro, NVS, and GeForce products, improper sanitization of parameters in the NVStreamKMS.sys API layer caused a de
5.5
MEDIUM
CVE-2016-4960
all versions
For the NVIDIA Quadro, NVS, and GeForce products, the NVIDIA NVStreamKMS.sys service component is improperly validating user-suppl
7.3
HIGH
CVE-2016-3161
<= -
For the NVIDIA Quadro, NVS, and GeForce products, GFE GameStream and NVTray Plugin unquoted service path vulnerabilities are examp
7.8
HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin