CVE-2023-39254
CVSS V2 None
CVSS V3 None
Description
Dell Update Package (DUP), Versions prior to 4.9.10 contain an Uncontrolled Search Path vulnerability. A malicious user with local access to the system could potentially exploit this vulnerability to run arbitrary code as admin.
Overview
- CVE ID
- CVE-2023-39254
- Assigner
- dell
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-03-01T12:43:30.966Z
- Last Modified Date
- 2024-03-01T12:44:15.642Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://www.dell.com/support/kbdoc/en-us/000217701/dsa-2023-338-security-update-for-a-dell-update-package-dup-framework-vulnerability | vendor-advisory |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-39254 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-39254 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 19:13:36 | Added to TrackCVE |