Vulnerability Details CVE-2023-28066
Dell OS Recovery Tool, versions 2.2.4013 and 2.3.7012.0, contain an Improper Access Control Vulnerability. A local authenticated non-administrator user could potentially exploit this vulnerability in order to elevate privileges on the system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.9%
CVSS Severity
CVSS v3 Score 7.3
Products affected by CVE-2023-28066
-
cpe:2.3:o:dell:os_recovery_tool:2.2.4013
-
cpe:2.3:o:dell:os_recovery_tool:2.3.7012.0