Dell SupportAssist Client for Consumer PCs versions 3.7.x, 3.6.x, 3.4.x, 3.3.x, Dell SupportAssist Client for Business PCs versions 2.0.x, 2.1.x, 2.2.x, and Dell SupportAssist Client ProManage 1.x contain a DLL injection vulnerability in the Costura Fody plugin. A local user with low privileges could potentially exploit this vulnerability, leading to the execution of arbitrary executable on the operating system with SYSTEM privileges.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2021-03-10T00:00:00
Updated: 2021-03-12T20:10:13
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-21518
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-03-12T20:15:11.420
Modified: 2021-03-19T14:30:35.640
Link: CVE-2021-21518
JSON object: View
Redhat Information
No data.
CWE