Arbitrary File Deletion Vulnerability in Dell Command Update by Dell
CVE-2019-3749
5.6MEDIUM
What is CVE-2019-3749?
An Arbitrary File Deletion vulnerability exists in Dell Command Update versions prior to 3.1. This flaw allows a local authenticated user with limited privileges to potentially exploit the vulnerability by creating a symbolic link from the Temp directory to any targeted file, ultimately enabling the deletion of arbitrary files due to improper permission settings on the Temp directory.
Affected Version(s)
Dell Command Update (DCU) < 3.1