CVE-2026-86358
- EPSS 0.3%
- Veröffentlicht 16.09.2026 16:23:59
- Zuletzt bearbeitet 21.09.2026 17:51:45
Dell Update Package Framework, versions prior to 26.07.03, contains a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Remote execution.
- EPSS 0.12%
- Veröffentlicht 16.09.2026 16:20:26
- Zuletzt bearbeitet 21.09.2026 17:30:22
Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to...
- EPSS 0.12%
- Veröffentlicht 16.09.2026 16:16:02
- Zuletzt bearbeitet 21.09.2026 17:30:31
Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to...
CVE-2026-71180
- EPSS 0.13%
- Veröffentlicht 16.09.2026 16:12:10
- Zuletzt bearbeitet 21.09.2026 17:30:41
Dell Update Package Framework, versions prior to 26.07.03, contains an Unchecked Return Value vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
CVE-2026-71179
- EPSS 0.51%
- Veröffentlicht 16.09.2026 16:07:38
- Zuletzt bearbeitet 21.09.2026 17:30:48
Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit thi...
CVE-2026-23857
- EPSS 0.09%
- Veröffentlicht 12.02.2026 02:05:31
- Zuletzt bearbeitet 18.02.2026 19:33:06
Dell Update Package (DUP) Framework, versions 23.12.00 through 24.12.00, contains an Improper Handling of Insufficient Permissions or Privileges vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, ...
CVE-2025-22395
- EPSS 0.19%
- Veröffentlicht 07.01.2025 03:15:06
- Zuletzt bearbeitet 04.02.2025 15:49:52
Dell Update Package Framework, versions prior to 22.01.02, contain(s) a Local Privilege Escalation Vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary remote scripts on th...
CVE-2023-39254
- EPSS 0.17%
- Veröffentlicht 01.03.2024 13:15:07
- Zuletzt bearbeitet 31.01.2025 15:51:09
Dell Update Package (DUP), Versions prior to 4.9.10 contain an Uncontrolled Search Path vulnerability. A malicious user with local access to the system could potentially exploit this vulnerability to run arbitrary code as admin.
CVE-2023-32454
- EPSS 0.17%
- Veröffentlicht 06.02.2024 08:15:49
- Zuletzt bearbeitet 21.11.2024 08:03:23
DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability. A local malicious standard user could exploit the vulnerability to create arbitrary files, leading to denial of service
CVE-2019-3726
- EPSS 0.46%
- Veröffentlicht 24.09.2019 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:42:24
An Uncontrolled Search Path Vulnerability is applicable to the following: Dell Update Package (DUP) Framework file versions prior to 19.1.0.413, and Framework file versions prior to 103.4.6.69 used in Dell EMC Servers. Dell Update Package (DUP) Frame...