Dell Update Package (DUP) Framework
cpe:2.3:a:dell:update_package_framework:*:*:*:*:*:*:*
- >= 23.12.00, <= 24.12.00
A vulnerability has been identified in the Dell Update Package (DUP) Framework, specifically in versions 23.12.00 prior to 24.12.00. This vulnerability involves improper handling of permissions, allowing a low-privileged attacker with local access to potentially escalate privileges.
Exploitation of this vulnerability could lead to unauthorized privilege escalation.
Users are advised to update to Dell Update Package (DUP) Framework version 25.02.00 or later. Instructions for downloading the updated version are available on the Dell Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.