Vulnerability Description
Dell Command Monitor, versions 10.9 and prior, contains an improper folder permission vulnerability. A local authenticated malicious user can potentially exploit this vulnerability leading to privilege escalation by writing to a protected directory when Dell Command Monitor is installed to a non-default path
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Command \| Monitor | <= 10.9 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/kbdoc/en-us/000212226/dsa-2023-133Vendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000212226/dsa-2023-133Vendor Advisory
FAQ
What is CVE-2023-28068?
CVE-2023-28068 is a vulnerability with a CVSS score of 7.3 (HIGH). Dell Command Monitor, versions 10.9 and prior, contains an improper folder permission vulnerability. A local authenticated malicious user can potentially exploit this vulnerability leading to privile...
How severe is CVE-2023-28068?
CVE-2023-28068 has been rated HIGH with a CVSS base score of 7.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-28068?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Command \| Monitor.