Headline
CVE-2023-24573: DSA-2023-033: Dell Command | Monitor Security Update for an Arbitrary Folder Deletion Vulnerability
Dell Command | Monitor versions prior to 10.9 contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicious user may potentially exploit this vulnerability leading to arbitrary folder deletion.
Vaikutus
Medium
Tiedot
Proprietary Code CVEs
Description
More Information
CVE-2023-24573
Dell Command | Monitor versions prior to 10.9 contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicious user may potentially exploit this vulnerability leading to arbitrary folder deletion.
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
See NVD (http://nvd.nist.gov/) for additional details.
Proprietary Code CVEs
Description
More Information
CVE-2023-24573
Dell Command | Monitor versions prior to 10.9 contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicious user may potentially exploit this vulnerability leading to arbitrary folder deletion.
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
See NVD (http://nvd.nist.gov/) for additional details.
Dell Technologies suosittelee, että kaikki asiakkaat ottavat huomioon sekä CVSS-peruspistemäärän että kaikki asiaankuuluvat väliaikaiset ja ympäristöön liittyvät pisteet, jotka voivat vaikuttaa tietyn tietoturvahaavoittuvuuden mahdolliseen vakavuuteen.
Tuotteet, joihin asia vaikuttaa ja tilanteen korjaaminen
CVEs Addressed
Product
Affected Versions
Updated Versions
Link to Update
CVE-2023-24573
Dell Command | Monitor
Versions before 10.9
10.9
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=5RFFM
CVEs Addressed
Product
Affected Versions
Updated Versions
Link to Update
CVE-2023-24573
Dell Command | Monitor
Versions before 10.9
10.9
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=5RFFM
Kiitokset
CVE-2023-24573: Dell Technologies would like to thank ycdxsb for reporting this issue.
Versiohistoria
Revision
Date
Description
1.0
2023-02-07
Initial Release
Asiaan liittyvät tiedot
Dell Security Advisories and Notices
Dell Vulnerability Response Policy
CVSS Scoring Guide
08 helmik. 2023
Related news
Dell Command | Integration Suite for System Center, versions before 6.4.0 contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicious user may potentially exploit this vulnerability leading to arbitrary folder deletion.