Описание
Dell Command | Update, Dell Update, and Alienware Update version 4.4.0 contains a Local Privilege Escalation Vulnerability in the Advanced Driver Restore component. A local malicious user could potentially exploit this vulnerability, leading to privilege escalation.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:dell:alienware_update:4.4.0:*:*:*:*:*:*:*
cpe:2.3:a:dell:command_update:4.4.0:*:*:*:*:*:*:*
cpe:2.3:a:dell:update:4.4.0:*:*:*:*:*:*:*
EPSS
Процентиль: 12%
0.00039
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-427
CWE-427
Связанные уязвимости
CVSS3: 7.8
github
почти 4 года назад
Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.5 contain a Local Privilege Escalation Vulnerability in the Advanced Driver Restore component. A local malicious user could potentially exploit this vulnerability, leading to privilege escalation.
EPSS
Процентиль: 12%
0.00039
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-427
CWE-427