Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-3719

Опубликовано: 18 апр. 2019
Источник: nvd
CVSS3: 7.1
CVSS3: 8
CVSS2: 7.9
EPSS Средний

Описание

Dell SupportAssist Client versions prior to 3.2.0.90 contain a remote code execution vulnerability. An unauthenticated attacker, sharing the network access layer with the vulnerable system, can compromise the vulnerable system by tricking a victim user into downloading and executing arbitrary executables via SupportAssist client from attacker hosted sites.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dell:supportassist:*:*:*:*:*:*:*:*
Версия до 3.2.0.90 (исключая)

EPSS

Процентиль: 96%
0.26425
Средний

7.1 High

CVSS3

8 High

CVSS3

7.9 High

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

Dell SupportAssist Client versions prior to 3.2.0.90 contain a remote code execution vulnerability. An unauthenticated attacker, sharing the network access layer with the vulnerable system, can compromise the vulnerable system by tricking a victim user into downloading and executing arbitrary executables.

EPSS

Процентиль: 96%
0.26425
Средний

7.1 High

CVSS3

8 High

CVSS3

7.9 High

CVSS2

Дефекты

NVD-CWE-noinfo