Fiche vulnérabilité
CVE-2023-39257 : faille élevée Dell Rugged Control Center (RCC) (CVSS 7.3)
Description
Dell Rugged Control Center, version prior to 4.7, contains an Improper Access Control vulnerability. A local malicious standard user could potentially exploit this vulnerability to modify the content in an unsecured folder when product installation repair is performed, leading to privilege escalation on the system.
En bref
- Sévérité
- Élevée (CVSS 7.3)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 2 déc. 2023
- Dernière mise à jour
- 2 août 2024
Produits concernés
- Dell Rugged Control Center (RCC)