Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000185100


DSA-2021-079: Dell Client Security Update for Dell Peripheral Manager Local Privilege Escalation Vulnerability

Summary: Dell Peripheral Manager 1.3.1 or later contains remediation for a local privilege escalation issue vulnerability that may potentially be exploited to gain arbitrary code execution on the system with privileges of the system user. ...

Article Content


Impact

High

Details

Proprietary Code CVE Description CVSS Base Score CVSS Vector String
CVE-2021-21545 Dell Peripheral Manager 1.3.1 or later contains remediation for a local privilege escalation vulnerability that may be potentially exploited to gain arbitrary code execution on the system with privileges of the system user. 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Proprietary Code CVE Description CVSS Base Score CVSS Vector String
CVE-2021-21545 Dell Peripheral Manager 1.3.1 or later contains remediation for a local privilege escalation vulnerability that may be potentially exploited to gain arbitrary code execution on the system with privileges of the system user. 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product Affected Versions Updated Version Release Date
(MM/DD/YYYY)
Link to Update
Dell Peripheral Manager Versions before 1.3.1  1.4.1 06-24-2021 Dell Peripheral Manager
Product Affected Versions Updated Version Release Date
(MM/DD/YYYY)
Link to Update
Dell Peripheral Manager Versions before 1.3.1  1.4.1 06-24-2021 Dell Peripheral Manager

Acknowledgements

Dell would like to thank Nikolas Sotiriu for reporting this issue.

Related Information


Article Properties


Affected Product

Dell Peripheral Manager, Product Security Information

Last Published Date

03 Aug 2022

Version

4

Article Type

Dell Security Advisory