Home

Description

Dell Command Monitor (DCM), versions prior to 10.12.3.28, contains an Execution with Unnecessary Privileges vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

PUBLISHED Reserved 2025-04-21 | Published 2025-11-05 | Updated 2025-11-06 | Assigner dell




HIGH: 7.3CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Problem types

CWE-250: Execution with Unnecessary Privileges

Product status

Default status
unaffected

Any version before 10.12.3.28
affected

Credits

Dell Technologies would like to thank Marius Gabriel Mihai for reporting this issue. finder

References

www.dell.com/support/kbdoc/en-us/000384947/dsa-2025-414 vendor-advisory

cve.org (CVE-2025-43990)

nvd.nist.gov (CVE-2025-43990)

Download JSON