Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2019-3745
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The vulnerability is limited to the installers of Dell Encryption Enterprise versions prior to 10.4.0 and Dell Endpoint Security Suite Enterprise versions prior to 2.4.0. This issue is exploitable only during the installation of the product by an administrator. A local authenticated low privileged user potentially could exploit this vulnerability by staging a malicious DLL in the search path of the installer prior to its execution by a local administrator. This would cause loading of the malicious DLL, which would allow the attacker to execute arbitrary code in the context of an administrator.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
对搜索路径元素未加控制
Source: NVD (National Vulnerability Database)
Vulnerability Title
Dell Encryption Enterprise和Dell Endpoint Security Suite Enterprise 代码问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Dell Encryption Enterprise是美国戴尔(Dell)公司的一套数据保护解决方案。该产品包括合规性管理、身份验证、磁盘数据加密和端口加密等功能。 Dell Encryption Enterprise 10.4.0之前版本中和Dell Endpoint Security Suite Enterprise prior 2.4.0之前版本存在代码问题漏洞。该漏洞源于网络系统或产品的代码开发过程中存在设计或实现不当的问题。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
DellDell Encryption Enterprise unspecified ~ 10.4.0 -
DellDell Endpoint Security Suite Enterprise unspecified ~ 2.4.0 -
II. Public POCs for CVE-2019-3745
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2019-3745
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2019-3745

No comments yet


Leave a comment