Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7mg4-ffx3-2m8f

Опубликовано: 23 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

Dell Command | Configure, versions prior to 4.11.0, contains an improper access control vulnerability. A local malicious user could potentially modify files inside installation folder during application upgrade, leading to privilege escalation.

Dell Command | Configure, versions prior to 4.11.0, contains an improper access control vulnerability. A local malicious user could potentially modify files inside installation folder during application upgrade, leading to privilege escalation.

EPSS

Процентиль: 8%
0.0003
Низкий

7.3 High

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 7.3
nvd
около 2 лет назад

Dell Command | Configure, versions prior to 4.11.0, contains an improper access control vulnerability. A local malicious user could potentially modify files inside installation folder during application upgrade, leading to privilege escalation.

EPSS

Процентиль: 8%
0.0003
Низкий

7.3 High

CVSS3

Дефекты

CWE-284