6.7
CVSSv3

CVE-2020-15596

Published: 12/08/2020 Updated: 21/07/2021
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 410
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The ALPS ALPINE touchpad driver prior to 8.2206.1717.634, as used on various Dell, HP, and Lenovo laptops, allows malicious users to conduct Path Disclosure attacks via a "fake" DLL file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hp elite_x2_1012_g1_firmware

hp elite_x2_1012_g2_firmware

hp elitebook_1030_g1_firmware

hp elitebook_1040_g4_firmware

hp elitebook_folio_1040_g3_firmware

hp elitebook_folio_g1_firmware

hp elitebook_revolve_810_g2_firmware

hp elitebook_revolve_810_g3_firmware

hp elitebook_x360_1020_g2_firmware

hp elitebook_x360_1030_g2_firmware

hp pro_x2_612_g2_firmware

hp zbook_studio_g3_firmware

hp zbook_studio_g4_firmware

hp zbook_x2_g4_firmware

Vendor Advisories

ALPS ALPINE has informed HP of a potential security vulnerability with the ALPS ALPINE Touchpad Driver for Windows, which may allow a local attacker with administrative privileges to execute arbitrary code ...
ALPS ALPINE has informed HP of a potential security vulnerability with the ALPS ALPINE Touchpad Driver for Windows, which may allow a local attacker with administrative privileges to execute arbitrary code ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> Advisory:[CVE-2020-15596]ALPS ALPINE DLL Hijacking Issue <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: ...