PT-2019-16679 · Dell · Dell Supportassist For Business Pcs+1
CVE-2019-3735
·
Publicado
2019-06-20
·
Atualizado
2023-03-04
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Dell SupportAssist for Business PCs version 2.0
Dell SupportAssist for Home PCs versions 2.2 through 3.2.1
Description
The issue concerns an Improper Privilege Management vulnerability. A malicious local user can exploit this by inheriting a system thread using a leaked thread handle to gain system privileges on the affected machine.
Recommendations
For Dell SupportAssist for Business PCs version 2.0, update to a version that addresses the Improper Privilege Management vulnerability.
For Dell SupportAssist for Home PCs versions 2.2 through 3.2.1, update to a version that addresses the Improper Privilege Management vulnerability.
Correção
Improper Privilege Management
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Dell Supportassist For Business Pcs
Dell Supportassist For Home Pcs