Portrait Dell Color Management Insecure Permissions Vulnerability Allowing Privilege Escalation
Vulnerability
A vulnerability exists in the Portrait Dell Color Management application, specifically in versions 3.3.008 and prior, for Dell monitors. The issue arises from the application creating an installation folder with weak permissions when a custom installation path is used. This flaw could be exploited by a low-privileged attacker with local access, potentially leading to unauthorized elevation of privileges.
Impact
Exploitation of this vulnerability could allow a low-privileged user to gain elevated privileges on the system.
Remediation
Users can upgrade to Dell Color Management version 3.5.3.0 or higher. The latest version can be downloaded from the Portrait Displays website.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
