Home
HIGH: 8.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HDefault status
unaffected
Any version before 4.7.0
affected
Description
Dell Command | Intel vPro Out of Band, versions prior to 4.7.0, contain an Uncontrolled Search Path Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
Problem types
CWE-427: Uncontrolled Search Path Element
Product status
Any version before 4.7.0
Credits
Dell would like to thank Sandro Poppi for reporting this issue.
References
www.dell.com/support/kbdoc/en-us/000429179/dsa-2026-106