Description
Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains a Local Privilege Escalation vulnerability via XSL Hijacking. A local low-privileged malicious user could potentially exploit this vulnerability and escalate their privilege to the admin user and gain full control of the machine. Exploitation may lead to a complete system compromise.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-36452 | Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains a Local Privilege Escalation vulnerability via XSL Hijacking. A local low-privileged malicious user could potentially exploit this vulnerability and escalate their privilege to the admin user and gain full control of the machine. Exploitation may lead to a complete system compromise. |
References
History
Thu, 09 Jan 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell openmanage Server Administrator |
|
| CPEs | cpe:2.3:a:dell:openmanage_server_administrator:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Dell
Dell openmanage Server Administrator |
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-08-02T03:50:54.552Z
Reserved: 2024-06-03T12:08:48.716Z
Link: CVE-2024-37130
Updated: 2024-08-02T03:50:54.552Z
Status : Analyzed
Published: 2024-06-11T02:15:08.943
Modified: 2025-01-09T21:20:54.087
Link: CVE-2024-37130
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD