PT-2019-16663 · Dell · Dell Supportassist Client

John C. Hennessy-Recar

·

Published

2019-04-18

·

Updated

2023-02-10

·

CVE-2019-3718

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell SupportAssist Client versions prior to 3.2.0.90
Description The issue concerns an improper origin validation, which could be exploited by an unauthenticated remote attacker to attempt CSRF attacks on users of the impacted systems.
Recommendations For versions prior to 3.2.0.90, update to version 3.2.0.90 or later to resolve the issue.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2019-3718

Affected Products

Dell Supportassist Client