DSA-2023-032: Dell Command | Integration Suite for System Center Security Update for an Arbitrary Folder Deletion Vulnerability
Summary: Dell Command | Integration Suite for System Center remediation is available for an arbitrary folder deletion security vulnerability that may be exploited by malicious users to compromise the affected system. ...
Αυτό το άρθρο ισχύει για
Αυτό το άρθρο δεν ισχύει για
Αυτό το άρθρο δεν συνδέεται με κάποιο συγκεκριμένο προϊόν.
Δεν προσδιορίζονται όλες οι εκδόσεις προϊόντων σε αυτό το άρθρο.
Impact
Medium
Details
| Proprietary Code CVEs | Description | More Information |
| CVE-2023-24572 | Dell Command | Integration Suite for System Center, versions before 6.4.0 contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicious user may potentially exploit this vulnerability leading to arbitrary folder deletion. | CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H See NVD (http://nvd.nist.gov/) |
| Proprietary Code CVEs | Description | More Information |
| CVE-2023-24572 | Dell Command | Integration Suite for System Center, versions before 6.4.0 contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicious user may potentially exploit this vulnerability leading to arbitrary folder deletion. | CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H See NVD (http://nvd.nist.gov/) |
Επηρεαζόμενα προϊόντα και αποκατάσταση
| CVEs Addressed | Product | Affected Versions | Updated Versions | Link to Update |
| CVE-2023-24572 | Dell Command | Integration Suite for System Center | Versions prior to 6.4.0 |
6.4.0 | https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=T9HK2 |
| CVEs Addressed | Product | Affected Versions | Updated Versions | Link to Update |
| CVE-2023-24572 | Dell Command | Integration Suite for System Center | Versions prior to 6.4.0 |
6.4.0 | https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=T9HK2 |
Revision History
| Revision | Date | Description |
| 1.0 | 2023-02-07 | Initial Release |
Acknowledgements
CVE-2023-24573: Dell Technologies would like to thank ycdxsb for reporting this issue.
Related Information
Νομική αποποίηση ευθύνης
Επηρεαζόμενα προϊόντα
Dell Command | Integration Suite for Microsoft System Center, Product Security InformationΙδιότητες άρθρου
Article Number: 000207931
Article Type: Dell Security Advisory
Τελευταία τροποποίηση: 08 Φεβ 2023
Βρείτε απαντήσεις στις ερωτήσεις σας από άλλους χρήστες της Dell
Υπηρεσίες υποστήριξης
Ελέγξτε αν η συσκευή σας καλύπτεται από τις Υπηρεσίες υποστήριξης.