Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gf79-frwr-2v77

Опубликовано: 13 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary file deletion and Elevation of Privileges.

Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary file deletion and Elevation of Privileges.

EPSS

Процентиль: 3%
0.00017
Низкий

7 High

CVSS3

Дефекты

CWE-59
CWE-61

Связанные уязвимости

CVSS3: 7
nvd
12 месяцев назад

Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary file deletion and Elevation of Privileges.

EPSS

Процентиль: 3%
0.00017
Низкий

7 High

CVSS3

Дефекты

CWE-59
CWE-61