Arbitrary Folder Deletion Risk in Dell Command Integration Suite
CVE-2023-24572

4.7MEDIUM

What is CVE-2023-24572?

Dell Command | Integration Suite for System Center, prior to version 6.4.0, contains a vulnerability that allows a locally authenticated user to delete arbitrary folders during the uninstallation process. This issue can potentially be exploited by malicious users to disrupt operational efficiency or compromise sensitive data. It is crucial for users to upgrade to the latest version to mitigate this risk and enhance their cybersecurity posture.

Affected Version(s)

Dell Command Integration Suite for System Center (DCIS) 0 < 6.4.0

References

CVSS V3.1

Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.