Vulnerability Details CVE-2023-32454
DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability. A local malicious standard user could exploit the vulnerability to create arbitrary files, leading to denial of service
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 3.6%
CVSS Severity
CVSS v3 Score 6.3
Products affected by CVE-2023-32454
-
cpe:2.3:a:dell:update_package_framework:-
-
cpe:2.3:a:dell:update_package_framework:3.8.3.67
-
cpe:2.3:a:dell:update_package_framework:4.9.4.36