Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server version prior to 11.8.1 contain an Insecure Operation on Windows Junction Vulnerability during installation. A local malicious user could potentially exploit this vulnerability to create an arbitrary folder inside a restricted directory, leading to Privilege Escalation

Advisories
Source ID Title
EUVD EUVD EUVD-2023-42980 Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server version prior to 11.8.1 contain an Insecure Operation on Windows Junction Vulnerability during installation. A local malicious user could potentially exploit this vulnerability to create an arbitrary folder inside a restricted directory, leading to Privilege Escalation
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-08-02T18:02:06.438Z

Reserved: 2023-07-26T08:13:50.420Z

Link: CVE-2023-39246

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-11-16T09:15:07.283

Modified: 2024-11-21T08:14:59.150

Link: CVE-2023-39246

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses