Intel(R) SCS Discovery Utility Remote Code Execution Vulnerability


Unquoted service path in the installer for the Intel(R) SCS Discovery Utility version and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.


The information has been provided by Marius Gabriel Mihai.
The original article can be found at:


Intel Scs Discovery Utility is prone to a remote code-execution vulnerability.This allows a remote attacker to exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts may result in a denial-of-service condition. 

Vulnerable Systems:

  • Intel Scs Discovery Utility

CVE Information:

Disclosure Timeline:
Publish Date:05/17/2019