Dell Command | Update, Dell Update, and Alienware Update versions before 4.3 contains an Improper Verification of Cryptographic Signature Vulnerability. A local authenticated malicious user may exploit this vulnerability by executing arbitrary code on the system.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Alienware_command_center_application | Dell | * | 5.4.35.0 (excluding) |
Command_ | _update | Dell | * |
Update/alienware_update | Dell | * | 4.3.0 (excluding) |