Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server versions prior to 11.9.0 contain privilege escalation vulnerability due to improper ACL of the non-default installation directory. A local malicious user could potentially exploit this vulnerability by replacing binaries in installed directory and taking reverse shell of the system leading to Privilege Escalation.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-36723 Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server versions prior to 11.9.0 contain privilege escalation vulnerability due to improper ACL of the non-default installation directory. A local malicious user could potentially exploit this vulnerability by replacing binaries in installed directory and taking reverse shell of the system leading to Privilege Escalation.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-08-22T19:24:50.727Z

Reserved: 2023-05-09T06:09:57.041Z

Link: CVE-2023-32479

cve-icon Vulnrichment

Updated: 2024-08-02T15:18:37.789Z

cve-icon NVD

Status : Modified

Published: 2024-02-06T08:15:51.383

Modified: 2024-11-21T08:03:26.443

Link: CVE-2023-32479

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.