Dell SupportAssist for Home PCs version 3.14.1 and prior versions contain a privilege escalation vulnerability in the installer. A local low privileged authenticated attacker may potentially exploit this vulnerability, leading to the execution of arbitrary executable on the operating system with elevated privileges.
References
Configurations
Information
Published : 2023-12-22 16:15
Updated : 2024-01-02 20:02
NVD link : CVE-2023-48670
Mitre link : CVE-2023-48670
JSON object : View
Products Affected
dell
- supportassist_for_home_pcs
CWE
CWE-426
Untrusted Search Path
