CVE-2018-19322CISA KEVEPSS p77.8%

CVE-2018-19322GIGABYTE Multiple Products Code Execution Vulnerability

GIGABYTE / Multiple Products

Description

The GPCIDrv and GDrv low-level drivers in GIGABYTE App Center, AORUS Graphics Engine, XTREME Gaming Engine, and OC GURU II expose functionality to read/write data from/to IO ports. This could be leveraged in a number of ways to ultimately run code with elevated privileges.

Scoring

CVSS 7.8 ()
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS1.80% probability of exploitation · percentile 77.8% · 2026-10-05T12:00:23Z
Last modified2026-08-13

CISA KEV entry

Added to KEV: 2022-10-24

(incoming)1

TypeTargetConfidenceTier
KEVEntryGIGABYTE Multiple Products Code Execution Vulnerabilitykev-cve-2018-193220%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
GIGABYTE Multiple Products Privilege Escalation Vulnerability
CVE
GIGABYTE Multiple Products Unspecified Vulnerability
CVE
CVE-2026-4415
CVE
CVE-2025-20018
CVE
CVE-2026-24193
CVE
Qualcomm Multiple Chipsets Integer Overflow Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.