Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown
CVE-2023-43078
Disclosure Date: August 28, 2024 (last updated December 20, 2024)
Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder deletion, which could lead to Privilege Escalation or Denial of Service.
0
Attacker Value
Unknown
CVE-2024-28962
Disclosure Date: August 06, 2024 (last updated August 20, 2024)
Dell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method or Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.
0
Attacker Value
Unknown
CVE-2023-28065
Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell Command | Update, Dell Update, and Alienware Update versions 4.8.0 and prior contain an Insecure Operation on Windows Junction / Mount Point vulnerability. A local malicious user could potentially exploit this vulnerability leading to privilege escalation.
0
Attacker Value
Unknown
CVE-2023-28071
Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell Command | Update, Dell Update, and Alienware Update versions 4.9.0, A01 and prior contain an Insecure Operation on Windows Junction / Mount Point vulnerability. A local malicious user could potentially exploit this vulnerability to create arbitrary folder leading to permanent Denial of Service (DOS).
0
Attacker Value
Unknown
CVE-2022-34384
Disclosure Date: February 11, 2023 (last updated November 08, 2023)
Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell Update, and Alienware Update versions before 4.5 contain a Local Privilege Escalation Vulnerability in the Advanced Driver Restore component. A local malicious user may potentially exploit this vulnerability, leading to privilege escalation.
0
Attacker Value
Unknown
CVE-2023-23698
Disclosure Date: February 10, 2023 (last updated November 08, 2023)
Dell Command | Update, Dell Update, and Alienware Update versions before 4.6.0 and 4.7.1 contain Insecure Operation on Windows Junction in the installer component. A local malicious user may potentially exploit this vulnerability leading to arbitrary file delete.
0
Attacker Value
Unknown
CVE-2022-34459
Disclosure Date: February 01, 2023 (last updated November 08, 2023)
Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a improper verification of cryptographic signature in get applicable driver component. A local malicious user could potentially exploit this vulnerability leading to malicious payload execution.
0
Attacker Value
Unknown
CVE-2022-34458
Disclosure Date: February 01, 2023 (last updated November 08, 2023)
Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in download operation component. A local malicious user could potentially exploit this vulnerability leading to the disclosure of confidential data.
0
Attacker Value
Unknown
CVE-2022-34382
Disclosure Date: August 08, 2022 (last updated October 08, 2023)
Dell Command Update, Dell Update and Alienware Update versions prior to 4.6.0 contains a Local Privilege Escalation Vulnerability in the custom catalog configuration. A local malicious user may potentially exploit this vulnerability in order to elevate their privileges.
0
Attacker Value
Unknown
CVE-2022-24426
Disclosure Date: March 25, 2022 (last updated October 07, 2023)
Dell Command | Update, Dell Update, and Alienware Update version 4.4.0 contains a Local Privilege Escalation Vulnerability in the Advanced Driver Restore component. A local malicious user could potentially exploit this vulnerability, leading to privilege escalation.
0