vendor:
Dell Security Management Server
by:
Amirhossein Bahramizadeh
6.1
CVSS
HIGH
Privilege Escalation
269
CWE
Product Name: Dell Security Management Server
Affected Version From: Prior to 11.9.0
Affected Version To: 11.8.9 and below
Patch Exists: NO
Related CWE: CVE-2023-32479
CPE: a:dell:security_management_server
Platforms Tested: Linux
2023
Dell Security Management Server Privilege Escalation
Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server versions prior to 11.9.0 are vulnerable to privilege escalation. This is due to improper ACLs of the non-default installation directory. An attacker with local access could exploit this by replacing binaries in the installation directory, allowing them to execute arbitrary commands and potentially gain elevated privileges on the system.
Mitigation:
To mitigate this vulnerability, ensure proper file system permissions are set on the installation directory. Regularly monitor the integrity of installed binaries for any unauthorized changes.