Arbitrary Folder Deletion Vulnerability Affects Dell Products

CVE-2023-43078
6.7MEDIUM

Key Information

Vendor
Dell
Status
Dell Client Platform, Dell Dock Firmware
Vendor
CVE Published:
28 August 2024

Summary

Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder deletion, which could lead to Privilege Escalation or Denial of Service.

Affected Version(s)

Dell Client Platform, Dell Dock Firmware < 1.27.0

Dell Client Platform, Dell Dock Firmware < 1.22.0

Dell Client Platform, Dell Dock Firmware < 1.14.1

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database
.