Description

DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability. A local malicious standard user could exploit the vulnerability to create arbitrary files, leading to denial of service

Published: 2024-02-06
Score: 6.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-36698 DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability. A local malicious standard user could exploit the vulnerability to create arbitrary files, leading to denial of service
History

No history.

Subscriptions

Dell Update Package Framework
cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-08-02T15:18:37.065Z

Reserved: 2023-05-09T06:02:34.291Z

Link: CVE-2023-32454

cve-icon Vulnrichment

Updated: 2024-08-02T15:18:37.065Z

cve-icon NVD

Status : Modified

Published: 2024-02-06T08:15:49.850

Modified: 2024-11-21T08:03:23.190

Link: CVE-2023-32454

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses