{"id":"CVE-2015-2291","title":"(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted …","summary":"(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted …","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-20","CWE-20"],"vendor":"intel","product":"ethernet_diagnostics_driver_iqvw32.sys","affected":["ethernet_diagnostics_driver_iqvw32.sys = 1.03.0.7","ethernet_diagnostics_driver_iqvw64.sys = 1.03.0.7"],"published":"2017-08-09","updated":"2026-08-04","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2015-2291","references":[{"url":"http://packetstormsecurity.com/files/130854/Intel-Network-Adapter-Diagnostic-Driver-IOCTL-DoS.html","label":"cve@mitre.org"},{"url":"http://www.securityfocus.com/bid/79623","label":"cve@mitre.org"},{"url":"https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00051&languageid=en-fr","label":"cve@mitre.org"},{"url":"https://www.exploit-db.com/exploits/36392/","label":"cve@mitre.org"},{"url":"http://packetstormsecurity.com/files/130854/Intel-Network-Adapter-Diagnostic-Driver-IOCTL-DoS.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/79623","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00051&languageid=en-fr","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.exploit-db.com/exploits/36392/","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-2291","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild","exploit-available"],"epss":0.09011,"epssPercentile":0.95103,"kev":true,"kevDateAdded":"2023-02-10","kevDueDate":"2023-03-03","kevRansomware":true,"exploited":true,"exploitAvailable":true,"ingestedAt":"2026-08-04T05:36:12.066Z","exploits":{"exploitdb":true,"github":3,"githubRepos":["https://github.com/Tare05/Intel-CVE-2015-2291","https://github.com/gmh5225/CVE-2015-2291","https://github.com/ethanedits/iqvw64e-privilege-escalation"],"checkedAt":"2026-09-21T15:23:35.062Z"},"slug":"CVE-2015-2291","body":"## Overview\n\n(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.\n\n## Affected\n\n- `ethernet_diagnostics_driver_iqvw32.sys = 1.03.0.7`\n- `ethernet_diagnostics_driver_iqvw64.sys = 1.03.0.7`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"abyssal","depthScore":75,"depthScoreParts":{"impact":42.9,"likelihood":1.8,"exploitation":25,"ransomware":5},"changes":[]}