Improper AC in Dell Alienware CC 5.7.3.0 enabling local DOS/Info Disclosure
CVE-2024-38301 Published on July 10, 2024
Dell Alienware Command Center, version 5.7.3.0 and prior, contains an improper access control vulnerability. A low privileged attacker could potentially exploit this vulnerability, leading to denial of service on the local system and information disclosure.
Vulnerability Analysis
CVE-2024-38301 can be exploited with local system access, requires user interaction and a small amount of user privileges. This vulnerability is consided to have a high level of attack complexity. The potential impact of an exploit of this vulnerability is considered to be very high.
Weakness Type
Insufficient Isolation of Symbolic Constant Definitions
The source code uses symbolic constants, but it does not sufficiently place the definitions of these constants into a more centralized or isolated location.
Products Associated with CVE-2024-38301
Want to know whenever a new CVE is published for Dell Alienware Command Center? stack.watch will email you.
Affected Versions
Dell Alienware Command Center (AWCC):- Before 5.8.2.0 is affected.
- Before 5.8.2.0 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.