CVE-2023-39246 Information

Description

Dell Encryption Dell Endpoint Security Suite Enterprise and Dell Security Management Server version prior to 11.8.1 contain an Insecure Operation on Windows Junction Vulnerability during installation. A local malicious user could potentially exploit this vulnerability to create an arbitrary folder inside a restricted directory leading to Privilege Escalation

Reference

https://www.dell.com/support/kbdoc/en-us/000217572/dsa-2023-271

Share on: