Dell OpenManage Server Administrator Vulnerability: Local Privilege Escalation via XSL Hijacking
CVE-2024-37130
7.8HIGH
Key Information:
- Vendor
Dell
- Vendor
- CVE Published:
- 11 June 2024
What is CVE-2024-37130?
A vulnerability exists in Dell OpenManage Server Administrator that allows a low-privileged local user to exploit XSL Hijacking to escalate their privileges. Successful exploitation can grant the attacker administrative rights, enabling them to gain full control of the machine. This could lead to widespread system compromise, highlighting the importance of applying necessary security updates and mitigating risks associated with this vulnerability.
Affected Version(s)
Dell OpenManage Server Administrator < 11.0.1.1
Dell OpenManage Server Administrator < 11.0.0.2
Dell OpenManage Server Administrator < 10.3.0.1