CVE Vulnerabilities

CVE-2023-32479

Published: Feb 06, 2024 | Modified: Feb 13, 2024
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server versions prior to 11.9.0 contain privilege escalation vulnerability due to improper ACL of the non-default installation directory. A local malicious user could potentially exploit this vulnerability by replacing binaries in installed directory and taking reverse shell of the system leading to Privilege Escalation.

Affected Software

Name Vendor Start Version End Version
Encryption Dell * 11.9.0 (excluding)
Endpoint_security_suite_enterprise Dell * 11.9.0 (excluding)

References