Dell Device Management Agent Incorrect Authorization Vulnerability Leading to Privilege Escalation
Vulnerability
A vulnerability allowing incorrect authorization has been identified in Dell Device Management Agent (DDMA) versions prior to 26.02. This vulnerability could be exploited by a low-privileged attacker with local access, potentially leading to unauthorized elevation of privileges.
Impact
Exploitation of this vulnerability could result in unauthorized elevation of privileges, allowing a low-privileged user to gain higher-level access or rights on the system.
Remediation
Users can upgrade to Dell Device Management Agent version 26.02 or later to address this vulnerability. Instructions for installing the Dell Device Management Agent on a host computer are available in a Dell Knowledge Base article.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
