Dell SupportAssist Client versions prior to 3.2.0.90 contain an improper origin validation vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability to attempt CSRF attacks on users of the impacted systems.
References
Link | Resource |
---|---|
https://www.dell.com/support/article/us/en/19/sln316857/dsa-2019-051-dell-supportassist-client-multiple-vulnerabilities?lang=en | Vendor Advisory |
http://www.securityfocus.com/bid/108020 | Broken Link Third Party Advisory VDB Entry |
Configurations
Information
Published : 2019-04-18 13:29
Updated : 2023-02-09 18:21
NVD link : CVE-2019-3718
Mitre link : CVE-2019-3718
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
dell
- supportassist