PT-2023-6498 · Dell · Dell Digital Delivery
Ycdxsb
·
Published
2023-09-07
·
Updated
2023-09-13
·
CVE-2023-32470
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Dell Digital Delivery versions prior to 5.0.82.0
Description
The issue is related to an Insecure Operation on Windows Junction / Mount Point vulnerability. A local malicious user could potentially exploit this vulnerability to create arbitrary folders, leading to permanent Denial of Service (DOS).
Recommendations
For Dell Digital Delivery versions prior to 5.0.82.0, update to version 5.0.82.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the Windows Junction / Mount Point to minimize the risk of exploitation.
Fix
Insecure Operation on Windows Junction
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Digital Delivery