Vulnerability CVE-2024-38305


Published: 2024-08-21

Description:
Dell SupportAssist for Home PCs Installer exe version 4.0.3 contains a privilege escalation vulnerability in the installer. A local low-privileged authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary executables on the operating system with elevated privileges.

Type:

CWE-426

(Untrusted Search Path)

 References:
https://www.dell.com/support/kbdoc/en-us/000227899/dsa-2024-312-security-update-for-dell-supportassist-for-home-pcs-installer-file-local-privilege-escalation-vulnerability

Copyright 2024, cxsecurity.com

 

Back to Top