Dell Rugged Control Center, version prior to 4.7, contains an improper access control vulnerability. A local malicious standard user could potentially exploit this vulnerability to modify the content in an unsecured folder during product installation and upgrade, leading to privilege escalation on the system.
References
Link | Resource |
---|---|
https://www.dell.com/support/kbdoc/en-us/000217705/dsa-2023-340 | Vendor Advisory |
https://www.dell.com/support/kbdoc/en-us/000217705/dsa-2023-340 | Vendor Advisory |
Configurations
History
21 Nov 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.dell.com/support/kbdoc/en-us/000217705/dsa-2023-340 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.3 |
06 Dec 2023, 21:01
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:dell:rugged_control_center:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
References | () https://www.dell.com/support/kbdoc/en-us/000217705/dsa-2023-340 - Vendor Advisory | |
CWE | NVD-CWE-Other | |
First Time |
Dell
Dell rugged Control Center |
02 Dec 2023, 05:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-12-02 05:15
Updated : 2024-11-21 08:15
NVD link : CVE-2023-39256
Mitre link : CVE-2023-39256
CVE.ORG link : CVE-2023-39256
JSON object : View
Products Affected
dell
- rugged_control_center
CWE