Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary file deletion and Elevation of Privileges.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
CWE-61
Vulnerability Title
Dell SupportAssist OS Recovery 安全漏洞
Vulnerability Description
Dell SupportAssist OS Recovery是美国戴尔(Dell)公司的提供了一个恢复环境,其中包含用于诊断和解决在计算机启动到操作系统之前可能发生的问题的工具。 Dell SupportAssist OS Recovery 5.5.13.1之前版本存在安全漏洞,该漏洞源于容易受到符号链接攻击,会导致任意文件删除和权限提升。
CVSS Information
N/A
Vulnerability Type
N/A