PT-2026-7811 · Dell · Dell Update Package (Dup) Framework

Michele Damico

·

Published

2026-02-12

·

Updated

2026-02-12

·

CVE-2026-23857

CVSS v3.1

8.2

High

VectorAV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell Update Package (DUP) Framework versions 23.12.00 through 24.12.00
Description The Dell Update Package (DUP) Framework contains an issue related to improper handling of insufficient permissions or privileges. A local attacker with low privileges could potentially exploit this issue, leading to elevation of privileges.
Recommendations Dell Update Package (DUP) Framework versions 23.12.00 through 24.12.00 should be updated. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Weakness Enumeration

Related Identifiers

CVE-2026-23857

Affected Products

Dell Update Package (Dup) Framework