CVE-2023-43078

MEDIUM

Dell Dock Firmware - Privilege Escalation/DoS

Title source: llm
STIX 2.1

Description

Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder deletion, which could lead to Privilege Escalation or Denial of Service.

Scores

CVSS v3 6.7
EPSS 0.0006
EPSS Percentile 17.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-59
Status published
Products (50)
dell/alienware_m15_r6_firmware < 1.27.0
dell/alienware_m15_r7_firmware < 1.22.0
dell/alienware_m16_r1_firmware < 1.14.1
dell/alienware_m18_r1_firmware < 1.14.1
dell/alienware_x14_r2_firmware < 1.11.0
dell/alienware_x16_r1_firmware < 1.11.0
dell/chengming_3900_firmware < 1.19.0
dell/chengming_3910_firmware < 1.11.0
dell/chengming_3911_firmware < 1.11.0
dell/chengming_3988_firmware < 1.20.0
... and 40 more
Published Aug 28, 2024
Tracked Since Feb 18, 2026