Improper Access Control in Dell Rugged Control Center
CVE-2023-39257

7.8HIGH

Key Information:

Vendor
Dell
Vendor
CVE Published:
2 December 2023

Summary

The Dell Rugged Control Center, affected in versions prior to 4.7, contains an Improper Access Control vulnerability. This security flaw may allow a local malicious standard user to exploit the system during a product installation repair. Specifically, the issue enables unauthorized modification of content within an unsecured folder, potentially leading to privilege escalation within the system.

Affected Version(s)

Rugged Control Center (RCC) Versions prior to 4.7

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.