CVE-2024-28962

Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method or Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:alienware_update:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:command_update:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:update:*:*:*:*:*:*:*:*

History

19 Aug 2024, 17:12

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000227236/dsa-2024-169 - () https://www.dell.com/support/kbdoc/en-us/000227236/dsa-2024-169 - Vendor Advisory
CPE cpe:2.3:a:dell:alienware_update:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:update:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:command_update:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 7.5
First Time Dell alienware Update
Dell update
Dell
Dell command Update

06 Aug 2024, 16:30

Type Values Removed Values Added
Summary
  • (es) Comando Dell | Update, Dell Update y Alienware Update UWP, versiones anteriores a la 5.4, contienen una vulnerabilidad de función o método peligroso expuesto. Un atacante no autenticado con acceso remoto podría explotar esta vulnerabilidad y provocar una denegación de servicio.

06 Aug 2024, 04:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-06 04:16

Updated : 2024-08-19 17:12


NVD link : CVE-2024-28962

Mitre link : CVE-2024-28962

CVE.ORG link : CVE-2024-28962


JSON object : View

Products Affected

dell

  • alienware_update
  • update
  • command_update
CWE
CWE-610

Externally Controlled Reference to a Resource in Another Sphere