Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_udoctor utility. An authenticated malicious user with local access could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19798 | Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_udoctor utility. An authenticated malicious user with local access could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-08-01T22:43:33.551Z
Reserved: 2024-01-08T12:59:32.808Z
Link: CVE-2024-22222
Updated: 2024-08-01T22:43:33.551Z
Status : Modified
Published: 2024-02-12T19:15:11.283
Modified: 2024-11-21T08:55:49.887
Link: CVE-2024-22222
No data.
OpenCVE Enrichment
No data.
EUVD