CVE-2022-29092

Severity CVSS v4.0:
Pending analysis
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
10/06/2022
Last modified:
17/06/2022

Description

Dell SupportAssist Client Consumer versions (3.11.0 and versions prior) and Dell SupportAssist Client Commercial versions (3.2.0 and versions prior) contain a privilege escalation vulnerability. A non-admin user can exploit the vulnerability and gain admin access to the system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:supportassist_for_business_pcs:*:*:*:*:*:*:*:* 3.2.0 (including)
cpe:2.3:a:dell:supportassist_for_home_pcs:*:*:*:*:*:*:*:* 3.11.0 (including)