Vulnerability Description
Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder deletion, which could lead to Privilege Escalation or Denial of Service.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Intel Thunderbolt Controller Firmware Update Utility | < 4.62.156.006 |
| Dell | G15 5510 | - |
| Dell | G3 3500 | - |
| Dell | G5 5500 | - |
| Dell | Inspiron 7490 | - |
| Dell | Inspiron 7500 | - |
| Dell | Inspiron 7501 | - |
| Dell | Vostro 7500 | - |
| Dell | Latitude 5290 2-In-1 | - |
| Dell | Latitude 5300 | - |
| Dell | Latitude 5310 | - |
| Dell | Latitude 5400 | - |
| Dell | Latitude 5401 | - |
| Dell | Latitude 5500 | - |
| Dell | Latitude 5501 | - |
| Dell | Latitude 7300 | - |
| Dell | Latitude 7400 | - |
| Dell | Precision 3540 | - |
| Dell | Precision 3541 | - |
| Dell | Latitude 5410 | - |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2023-43078?
CVE-2023-43078 is a vulnerability with a CVSS score of 6.7 (MEDIUM). Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder deletion, which could lead to Privilege Escalation or De...
How severe is CVE-2023-43078?
CVE-2023-43078 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-43078?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Intel Thunderbolt Controller Firmware Update Utility, Dell G15 5510, Dell G3 3500, Dell G5 5500, Dell Inspiron 7490.