Lucene search

K
cvelistDellCVELIST:CVE-2023-44281
HistoryJan 24, 2024 - 3:38 p.m.

CVE-2023-44281

2024-01-2415:38:32
CWE-264
dell
www.cve.org
2
dell pair installer
vulnerability
elevation of privilege
arbitrary files
denial of service

CVSS3

6.6

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H

EPSS

0

Percentile

5.1%

Dell Pair Installer version prior to 1.2.1 contains an elevation of privilege vulnerability. A low privilege user with local access to the system could potentially exploit this vulnerability to delete arbitrary files and result in Denial of Service.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Dell Pair",
    "vendor": "Dell",
    "versions": [
      {
        "lessThan": "1.2.1",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  }
]

CVSS3

6.6

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H

EPSS

0

Percentile

5.1%

Related for CVELIST:CVE-2023-44281