Vulnerability Details CVE-2023-23698
Dell Command | Update, Dell Update, and Alienware Update versions before 4.6.0 and 4.7.1 contain Insecure Operation on Windows Junction in the installer component. A local malicious user may potentially exploit this vulnerability leading to arbitrary file delete.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.9%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2023-23698
-
cpe:2.3:a:dell:alienware_update:4.6.0
-
cpe:2.3:a:dell:alienware_update:4.7.1
-
cpe:2.3:a:dell:command_update:4.6.0
-
cpe:2.3:a:dell:command_update:4.7.1