CVE-2019-3735
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Dell SupportAssist for Business PCs version 2.0 and Dell SupportAssist for Home PCs version 2.2, 2.2.1, 2.2.2, 2.2.3, 3.0, 3.0.1, 3.0.2, 3.1, 3.2, and 3.2.1 contain an Improper Privilege Management Vulnerability. A malicious local user can exploit this vulnerability by inheriting a system thread using a leaked thread handle to gain system privileges on the affected machine.
Dell SupportAssist para PCs de Empresas versión 2.0 y Dell SupportAssist para PCs de Hogar versiones 2.2, 2.2.1, 2.2.2, 2.2.3, 3.0, 3.0.1, 3.0.2, 3.1, 3.2 y 3.2.1, contienen una Vulnerabilidad de Administración de Privilegios Inapropiada . Un usuario local malicioso puede explotar esta vulnerabilidad al heredar un hilo (subproceso) del sistema utilizando un identificador de hilo (subproceso) filtrado para alcanzar privilegios del sistema en la máquina afectada.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-01-03 CVE Reserved
- 2019-06-20 CVE Published
- 2023-03-08 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-269: Improper Privilege Management
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.dell.com/support/article/sln317453 | 2023-03-04 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 2.2 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "2.2" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 2.2.1 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "2.2.1" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 2.2.2 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "2.2.2" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 2.2.3 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "2.2.3" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 3.0 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "3.0" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 3.0.1 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "3.0.1" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 3.0.2 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "3.0.2" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 3.1 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "3.1" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 3.2 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "3.2" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Home Pcs Search vendor "Dell" for product "Supportassist For Home Pcs" | 3.2.1 Search vendor "Dell" for product "Supportassist For Home Pcs" and version "3.2.1" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Supportassist For Business Pcs Search vendor "Dell" for product "Supportassist For Business Pcs" | 2.0 Search vendor "Dell" for product "Supportassist For Business Pcs" and version "2.0" | - |
Affected
|