CVE-2022-34389
- EPSS 0.04%
- Veröffentlicht 11.02.2023 01:23:24
- Zuletzt bearbeitet 21.11.2024 07:09:25
Dell SupportAssist contains a rate limit bypass issues in screenmeet API third party component. An unauthenticated attacker could potentially exploit this vulnerability and impersonate a legitimate dell customer to a dell support technician.
CVE-2022-34388
- EPSS 0.04%
- Veröffentlicht 11.02.2023 01:23:24
- Zuletzt bearbeitet 21.11.2024 07:09:24
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain information disclosure vulnerability. A local malicious user with low privileges could exploit this vulnerability to vie...
CVE-2022-34387
- EPSS 0.03%
- Veröffentlicht 11.02.2023 01:23:24
- Zuletzt bearbeitet 21.11.2024 07:09:24
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain a privilege escalation vulnerability. A local authenticated malicious user could potentially exploit this vulnerabilit...
CVE-2022-34385
- EPSS 0.04%
- Veröffentlicht 11.02.2023 01:23:23
- Zuletzt bearbeitet 21.11.2024 07:09:24
SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weakness vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitiv...
CVE-2022-34384
- EPSS 0.09%
- Veröffentlicht 11.02.2023 01:23:23
- Zuletzt bearbeitet 21.11.2024 07:09:24
Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell Update, and Alienware Update versions before 4.5 contain a Local Privilege Escalation Vulnerability i...
CVE-2022-34366
- EPSS 0.14%
- Veröffentlicht 10.02.2023 20:15:53
- Zuletzt bearbeitet 21.11.2024 07:09:21
Dell SupportAssist for Home PCs (version 3.11.2 and prior) contain Overly Permissive Cross-domain Whitelist vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information.
CVE-2022-29095
- EPSS 0.72%
- Veröffentlicht 10.06.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:58:28
Dell SupportAssist Client Consumer versions (3.10.4 and prior) and Dell SupportAssist Client Commercial versions (3.1.1 and prior) contain a cross-site scripting vulnerability. A remote unauthenticated malicious user could potentially exploit this vu...
CVE-2022-29094
- EPSS 0.11%
- Veröffentlicht 10.06.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:58:28
Dell SupportAssist Client Consumer versions (3.10.4 and versions prior) and Dell SupportAssist Client Commercial versions (3.1.1 and versions prior) contain an arbitrary file deletion/overwrite vulnerability. Authenticated non-admin user could exploi...
CVE-2022-29093
- EPSS 0.11%
- Veröffentlicht 10.06.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:58:28
Dell SupportAssist Client Consumer versions (3.10.4 and versions prior) and Dell SupportAssist Client Commercial versions (3.1.1 and versions prior) contain an arbitrary file deletion vulnerability. Authenticated non-admin user could exploit the issu...
CVE-2022-29092
- EPSS 0.16%
- Veröffentlicht 10.06.2022 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:58:28
Dell SupportAssist Client Consumer versions (3.11.0 and versions prior) and Dell SupportAssist Client Commercial versions (3.2.0 and versions prior) contain a privilege escalation vulnerability. A non-admin user can exploit the vulnerability and gain...