Dell Rugged Control Center, version prior to 4.7, contains an Improper Access Control vulnerability. A local malicious standard user could potentially exploit this vulnerability to modify the content in an unsecured folder when product installation repair is performed, leading to privilege escalation on the system.
References
Link | Resource |
---|---|
https://www.dell.com/support/kbdoc/en-us/000217705/dsa-2023-340 | Vendor Advisory |
https://www.dell.com/support/kbdoc/en-us/000217705/dsa-2023-340 | Vendor Advisory |
Configurations
History
21 Nov 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.3 |
References | () https://www.dell.com/support/kbdoc/en-us/000217705/dsa-2023-340 - Vendor Advisory |
06 Dec 2023, 20:55
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.dell.com/support/kbdoc/en-us/000217705/dsa-2023-340 - Vendor Advisory | |
CWE | NVD-CWE-Other | |
CPE | cpe:2.3:a:dell:rugged_control_center:*:*:*:*:*:*:*:* | |
First Time |
Dell
Dell rugged Control Center |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
02 Dec 2023, 05:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-12-02 05:15
Updated : 2024-11-21 08:15
NVD link : CVE-2023-39257
Mitre link : CVE-2023-39257
CVE.ORG link : CVE-2023-39257
JSON object : View
Products Affected
dell
- rugged_control_center
CWE