Description
Dell Command Configure versions prior to 4.2.1 contain an uncontrolled search path vulnerability. A locally authenticated malicious user could exploit this vulnerability by creating a symlink to a target file, allowing the attacker to overwrite or corrupt a specified file on the system.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-8322 | Dell Command Configure versions prior to 4.2.1 contain an uncontrolled search path vulnerability. A locally authenticated malicious user could exploit this vulnerability by creating a symlink to a target file, allowing the attacker to overwrite or corrupt a specified file on the system. |
References
| Link | Providers |
|---|---|
| https://www.dell.com/support/article/SLN319715 |
|
History
No history.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-17T01:25:33.000Z
Reserved: 2019-10-29T00:00:00.000Z
Link: CVE-2019-18575
No data.
Status : Modified
Published: 2019-12-06T21:15:10.593
Modified: 2024-11-21T04:33:19.657
Link: CVE-2019-18575
No data.
OpenCVE Enrichment
No data.
EUVD