CVE-2024-28962

D

ell Command | Update, Dell Update, and Alienware Update UWP, versions prior to 5.4, contain an Exposed Dangerous Method or Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.

References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:alienware_update:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:command_update:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:update:*:*:*:*:*:*:*:*

History

19 Aug 2024, 17:12

Type Values Removed Values Added
CPE cpe:2.3:a:dell:alienware_update:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:command_update:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:update:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 7.5
References () https://www.dell.com/support/kbdoc/en-us/000227236/dsa-2024-169 - () https://www.dell.com/support/kbdoc/en-us/000227236/dsa-2024-169 - Vendor Advisory
First Time Dell alienware Update
Dell
Dell command Update
Dell update

06 Aug 2024, 16:30

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-06 04:16

Updated : 2024-08-19 17:12


NVD link : CVE-2024-28962

Mitre link : CVE-2024-28962

CVE.ORG link : CVE-2024-28962


JSON object : View

CWE
CWE-610

Externally Controlled Reference to a Resource in Another Sphere