Dell Command | Update, Dell Update, and Alienware Update versions before 4.3 contains an Improper Verification of Cryptographic Signature Vulnerability. A local authenticated malicious user may exploit this vulnerability by executing arbitrary code on the system.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Alienware_command_center_application | Dell | * | 5.4.35.0 (excluding) |
| Command_ | _update | Dell | * |
| Update/alienware_update | Dell | * | 4.3.0 (excluding) |