Impact
Dell Watchdog Timer Driver versions before 2.0.0.1 contain an exposed IOCTL that fails to enforce proper access control. An attacker who already has local, low‑privileged access could invoke the ioctl and obtain elevated privileges. The weakness is classified as CWE‑698, which focuses on improper access control.
Affected Systems
This vulnerability affects Dell’s Watchdog Timer Driver. All installations running any version earlier than 2.0.0.1 are impacted.
Risk and Exploitability
The CVSS score of 8.8 classifies the issue as high severity. EPSS information is not available, and the vulnerability is not listed in the CISA KEV catalog, but the local attack nature and role elevation of the flaw raise concern. An attacker only needs local access and the ability to trigger the exposed ioctl to reach the elevated state.
OpenCVE Enrichment