Dell Command | Update, Dell Update, and Alienware Update versions before 4.6.0 and 4.7.1 contain Insecure Operation on Windows Junction in the installer component. A local malicious user may potentially exploit this vulnerability leading to arbitrary file delete.
2023-02-10T13:15:11.337
2024-11-21T07:46:41.060
Modified
CVSSv3.1: 5.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | dell | alienware_update | 4.6.0 | Yes |
| Application | dell | alienware_update | 4.7.1 | Yes |
| Application | dell | command_update | 4.6.0 | Yes |
| Application | dell | command_update | 4.7.1 | Yes |