Dell Repository Manager Improper Privilege Management Vulnerability Allowing Privilege Escalation

Vulnerability

A vulnerability has been identified in Dell Repository Manager (DRM) versions 3.4.7 and 3.4.8, related to improper handling of permissions. This vulnerability allows a low-privileged attacker with local access to exploit the issue, potentially leading to unauthorized elevation of privileges.

Impact

Exploitation of this vulnerability could allow a low-privileged user to gain elevated privileges on the system.

Remediation

Users can upgrade to Dell Repository Manager version 3.4.9 to address this vulnerability. For those already using version 3.4.9, no action is required. Additionally, ensure there is no symbolic link to the DRM working directory and its sub-directories.

Added: Sep 29, 2025, 9:29 PM
Updated: Sep 29, 2025, 9:29 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
7.5
exploitability
2.9
remediation
7.9
relevance
0.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.