DSA-2023-158: Security Update for a Dell Alienware Command Center Vulnerability
摘要: Dell Alienware Command Center remediation is available for a deserialization of untrusted data vulnerability that could be exploited by malicious users to compromise the affected system. ...
本文适用于
本文不适用于
本文并非针对某种特定的产品。
本文并非包含所有产品版本。
影响
High
详情
| Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
|---|---|---|---|
| CVE-2023-28072 | Dell Alienware Command Center, versions prior to 5.5.51.0, contain a deserialization of untrusted data vulnerability. A local malicious user could potentially send specially crafted requests to the .NET Remoting server to run arbitrary code on the system. | 7.8 | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H See NVD (https://nvd.nist.gov/ |
| Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
|---|---|---|---|
| CVE-2023-28072 | Dell Alienware Command Center, versions prior to 5.5.51.0, contain a deserialization of untrusted data vulnerability. A local malicious user could potentially send specially crafted requests to the .NET Remoting server to run arbitrary code on the system. | 7.8 | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H See NVD (https://nvd.nist.gov/ |
受影响的产品和补救措施
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| Alienware Command Center (AWCC) | Software | Versions prior to 5.5.51.0 | Version 5.5.51.0 or later | Alienware Command Center for Windows 11 and Windows 10 64-bit Alienware Command Center Application |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| Alienware Command Center (AWCC) | Software | Versions prior to 5.5.51.0 | Version 5.5.51.0 or later | Alienware Command Center for Windows 11 and Windows 10 64-bit Alienware Command Center Application |
修订历史记录
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2023-08-30 | Initial Release |
| 2.0 | 2023-08-30 | Corrected CVSS score link |
| 3.0 | 2023-09-01 | Corrected Acknowledgements section |
确认
Dell Technologies would like to thank Matt Hand for reporting this issue.
相关信息
法律免责声明
受影响的产品
Alienware Command Center文章属性
文章编号: 000212982
文章类型: Dell Security Advisory
上次修改时间: 15 1月 2025
从其他戴尔用户那里查找问题的答案
支持服务
检查您的设备是否在支持服务涵盖的范围内。