Dell Encryption versions before 10.8 and Dell Endpoint Security Suite versions before 2.8 contain a privilege escalation vulnerability because of an incomplete fix for CVE-2020-5358. A local malicious user with low privileges could potentially exploit this vulnerability to gain elevated privilege on the affected system with the help of a symbolic link.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
dell encryption |
||
dell endpoint security suite enterprise |